Blog
CVE-2016-4340: Privilege escalation via "impersonate" feature in existing v14.0/1 GitLab deployments
It has come to our attention that existing deployments of TurnKey GitLab (versions 14.0 & 14.1) are vulnerable to CVE-2016-4340, a critical security issue that allows …