4
CVSSv2

CVE-2021-22237

Published: 25/08/2021 Updated: 31/08/2021
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.9 | Impact Score: 3.6 | Exploitability Score: 1.2
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N

Vulnerability Summary

Under specialized conditions, GitLab may allow a user with an impersonation token to perform Git actions even if impersonation is disabled. This vulnerability is present in GitLab CE/EE versions prior to 13.12.9, 14.0.7, 14.1.2

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab

Vendor Advisories

Under specialized conditions, GitLab may allow a user with an impersonation token to perform Git actions even if impersonation is disabled This vulnerability is present in GitLab versions before 1412 ...