Missing access control in all GitLab versions starting from 13.12 before 14.0.9, all versions starting from 14.1 before 14.1.4, and all versions starting from 14.2 before 14.2.2 with Jira Cloud integration enabled allows Jira users without administrative privileges to add and remove Jira Connect Namespaces via the GitLab.com for Jira Cloud application configuration page
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitLab
Published: 2021-10-05T13:48:15
Updated: 2024-08-03T18:37:18.492Z
Reserved: 2021-01-05T00:00:00
Link: CVE-2021-22262
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-10-05T14:15:07.723
Modified: 2024-11-21T05:49:48.960
Link: CVE-2021-22262
Redhat
No data.