EIP-2026-114701
PRE-CVEGitLab Community Edition (CE) 13.10.3 - 'Sign_Up' User Enumeration
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-114701. PoCs published by 4D0niiS.
AI-analyzed exploit summary This exploit demonstrates a user enumeration vulnerability in GitLab CE 13.10.3 by leveraging the sign-up page's username validation endpoint. An unauthenticated attacker can brute-force usernames via the `/users/<username>/exists` endpoint to determine valid users based on the JSON response.
Description
GitLab Community Edition (CE) 13.10.3 - 'Sign_Up' User Enumeration
Exploits (1)
This exploit demonstrates a user enumeration vulnerability in GitLab CE 13.10.3 by leveraging the sign-up page's username validation endpoint. An unauthenticated attacker can brute-force usernames via the `/users/<username>/exists` endpoint to determine valid users based on the JSON response.