VDB
CVE-2021-22209
CVE-2021-22209
PUBLISHED
CVSS 7.5 HIGH
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.8. GitLab was not properly validating authorisation tokens which resulted in GraphQL mutation being executed.
EPSS 0.93% · 57.9th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
EPSS Score
0.93%
57.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 13.8.0, 13.10.0, 13.11.0 |
| Bitnami | gitlab | 13.10.0, 13.11.0, 13.8.0 |
Timeline
- Apr 28, 2021 CVE Published
- May 7, 2021 EPSS Score
- Jul 10, 2021 EPSS Score
- Sep 10, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Jan 13, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Mar 16, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 17, 2022 EPSS Score
- Sep 19, 2022 EPSS Score
- Nov 21, 2022 EPSS Score