Related Vulnerabilities: CVE-2021-22218  

All versions of GitLab CE/EE starting with 12.8 were affected by an issue in the handling of x509 certificates that could be used to spoof author of signed commits.

Severity Low

Remote Yes

Type Content spoofing

Description

All versions of GitLab CE/EE starting with 12.8 were affected by an issue in the handling of x509 certificates that could be used to spoof author of signed commits.

AVG-2023 gitlab 13.11.3-1 13.12.2-1 High Fixed

https://gitlab.com/gitlab-org/gitlab/-/issues/297665
https://hackerone.com/reports/1077019