Vulnerabilities > CVE-2023-6840 - Unspecified vulnerability in Gitlab

047910
CVSS 6.7 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
LOW
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
gitlab

Summary

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.