Assuming a database breach, nonce reuse issues in GitLab 11.6+ allows an attacker to decrypt some of the database's encrypted content
The product uses a broken or risky cryptographic algorithm or protocol.
Link | Tags |
---|---|
https://gitlab.com/gitlab-org/gitlab/-/issues/36855 | issue tracking exploit third party advisory |
https://gitlab.com/gitlab-org/cves/-/blob/master/2021/CVE-2021-22170.json | third party advisory exploit |