A cross-site request forgery vulnerability in the GraphQL API in GitLab since version 13.12 and before versions 13.12.6 and 14.0.2 allowed an attacker to call mutations as the victim
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitLab
Published: 2021-07-07T11:26:37
Updated: 2024-08-03T18:37:18.269Z
Reserved: 2021-01-05T00:00:00
Link: CVE-2021-22224
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-07-07T12:15:08.310
Modified: 2024-11-21T05:49:44.660
Link: CVE-2021-22224
Redhat
No data.