VDB

CVE-2021-22251

CVE-2021-22251 PUBLISHED

Improper validation of invited users' email address in GitLab EE affecting all versions since 12.2 allowed projects to add members with email address domain that should be blocked by group settings

EPSS 0.22% · 44.4th percentile

Risk Scores

EPSS Score
0.22%
44.4th percentile

Affected Products

VendorProductVersions
Bitnamigitlab12.2.0, 14.0.0, 14.1.0
Bitnamigitlab14.1.0, 14.0.0, 12.2.0

Timeline

  • Jul 1, 2021 CVE Published
  • Aug 24, 2021 EPSS Score
  • Oct 21, 2021 EPSS Score
  • Dec 18, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 15, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 14, 2022 EPSS Score
  • Jun 11, 2022 EPSS Score
  • Aug 9, 2022 EPSS Score
  • Oct 7, 2022 EPSS Score
  • Dec 4, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›