VDB

CVE-2021-22219

CVE-2021-22219 PUBLISHED CVSS 4.900000095367432 MEDIUM

All versions of GitLab CE/EE starting from 9.5 before 13.10.5, all versions starting from 13.11 before 13.11.5, and all versions starting from 13.12 before 13.12.2 allow a high privilege user to obtain sensitive information from log files because the sensitive information was not correctly registered for log masking.

EPSS 0.95% · 59.8th percentile

Risk Scores

CVSS 3.1
4.900000095367432
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.95%
59.8th percentile

Affected Products

VendorProductVersions
Bitnamigitlab9.5.0, 13.11.0, 13.12.0
Bitnamigitlab13.12.0, 9.5.0, 13.11.0

Timeline

  • Jun 8, 2021 CVE Published
  • Jun 9, 2021 EPSS Score
  • Aug 10, 2021 EPSS Score
  • Oct 11, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 11, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 13, 2022 EPSS Score
  • Jun 14, 2022 EPSS Score
  • Oct 16, 2022 EPSS Score
  • Dec 16, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›