5
CVSSv2

CVE-2021-22167

Published: 15/01/2021 Updated: 22/01/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

An issue has been discovered in GitLab affecting all versions starting from 12.1. Incorrect headers in specific project page allows malicious user to have a temporary read access to the private repository

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab

Vendor Advisories

An issue has been discovered in GitLab affecting all versions starting from 121 Incorrect headers within a specific project page allow attackers to have temporary read access to a public repository with project features restricted only to members The issue is mitigated in GitLab version 1372, 1364, and 1356 ...