5.3
CVSSv3

CVE-2022-1999

Published: 01/07/2022 Updated: 13/07/2022
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

An issue has been discovered in GitLab CE/EE affecting all versions from 8.13 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1. Under certain conditions, using the REST API an unprivileged user was able to change labels description.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab 15.1.0

gitlab gitlab