CVE-2021-22224
EUVD-2021-937007.07.2021, 12:15
A cross-site request forgery vulnerability in the GraphQL API in GitLab since version 13.12 and before versions 13.12.6 and 14.0.2 allowed an attacker to call mutations as the victim
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gitlab | gitlab | 13.12.0 ≤ 𝑥 < 13.12.6 |
| gitlab | gitlab | 14.0.0 ≤ 𝑥 < 14.0.2 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References