CVE-2022-4131 PUBLISHED

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.8 before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starting from 15.7 before 15.7.2. An attacker may cause Denial of Service on a GitLab instance by exploiting a regex issue in how the application parses user agents.

EPSS 0.26% · 49.0th percentile

Risk Scores

EPSS Score
0.26%
49.0th percentile

Affected Products

VendorProductVersions
Bitnamigitlab10.8.0, 15.6.0, 15.7.0
Bitnamigitlab10.8.0, 15.6.0, 15.7.0

Timeline

References

Open in Interactive Console →