Lucene search

K
osvGoogleOSV:CVE-2021-22171
HistoryJan 15, 2021 - 4:15 p.m.

CVE-2021-22171

2021-01-1516:15:13
Google
osv.dev
13
gitlab pages
api token theft
authentication parameters

AI Score

6.6

Confidence

Low

EPSS

0.002

Percentile

56.3%

Insufficient validation of authentication parameters in GitLab Pages for GitLab 11.5+ allows an attacker to steal a victim’s API token if they click on a maliciously crafted link

AI Score

6.6

Confidence

Low

EPSS

0.002

Percentile

56.3%