CVE-2022-2307 - log back

CVE-2022-2307 edited at 28 Jul 2022 19:19:19
Severity
- Unknown
+ Low
Remote
- Unknown
+ Remote
Description
+ gitlab allows a malicious Group Owner to retain a usable Group Access Token even after the Group is deleted, though the APIs usable by that token are limited
References
Notes
CVE-2022-2307 created at 28 Jul 2022 16:57:40