4.3
CVSSv2

CVE-2021-22202

Published: 02/04/2021 Updated: 07/04/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

An issue has been discovered in GitLab CE/EE affecting all previous versions. If the victim is an admin, it was possible to issue a CSRF in System hooks through the API.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab

Vendor Advisories

An issue has been discovered in GitLab CE/EE affecting all previous versions If the victim is an admin, it was possible to issue a cross-site request forgery (CSRF) in System hooks through the API The issue is fixed in GitLab versions 13101, 1395 and 1387 ...