GitLab 13.12 < 13.12.6 / 14.0 < 14.0.2 (CVE-2021-22224)
Discription

The version of GitLab installed on the remote host is affected by a vulnerability, as follows: A cross-site request forgery vulnerability in the GraphQL API in GitLab since version 13.12 and before versions 13.12.6 and 14.0.2 allowed an attacker to call mutations as the victim (CVE-2021-22224) Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version…Read More

Back to Main

Subscribe for the latest news: