vulnerability

Gitlab Gitlab: CVE-2020-13300: Incorrect Authorization

Severity
7
CVSS
(AV:N/AC:H/Au:N/C:C/I:C/A:N)
Published
2020-09-14
Added
2025-04-22
Modified
2025-05-05

Description

GitLab CE/EE version 13.3 prior to 13.3.4 was vulnerable to an OAuth authorization scope change without user consent in the middle of the authorization flow.

Solution

gitlab-gitlab-cve-2020-13300-solution
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.