Lucene search

K
osvGoogleOSV:CVE-2021-22248
HistoryAug 23, 2021 - 8:15 p.m.

CVE-2021-22248

2021-08-2320:15:11
Google
osv.dev
2

6.1 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

38.7%

Improper authorization on the pipelines page in GitLab CE/EE affecting all versions since 13.12 allowed unauthorized users to view some pipeline information for public projects that have access to pipelines restricted to members only

CPENameOperatorVersion
gitlabeq14.1.1-ee
gitlabeq14.1.0-ee

6.1 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

38.7%