VDB
CVE-2021-22248
CVE-2021-22248
PUBLISHED
CVSS 5.300000190734863 MEDIUM
Improper authorization on the pipelines page in GitLab CE/EE affecting all versions since 13.12 allowed unauthorized users to view some pipeline information for public projects that have access to pipelines restricted to members only
EPSS 1.05% · 62.0th percentile
Risk Scores
CVSS 3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
1.05%
62.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 13.12.0, 14.0.0, 14.1.0 |
| Bitnami | gitlab | 13.12.0, 14.0.0, 14.1.0 |
Timeline
- Jul 1, 2021 CVE Published
- Aug 24, 2021 EPSS Score
- Oct 21, 2021 EPSS Score
- Dec 19, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 15, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- Apr 15, 2022 EPSS Score
- Jun 12, 2022 EPSS Score
- Aug 11, 2022 EPSS Score
- Dec 6, 2022 EPSS Score
- Feb 2, 2023 EPSS Score