An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.5 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2. Unauthorized external users could perform Server Side Requests via the CI Lint API
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitLab
Published: 2021-12-13T15:47:59
Updated: 2024-08-04T02:20:34.211Z
Reserved: 2021-08-23T00:00:00
Link: CVE-2021-39935
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-12-13T16:15:09.367
Modified: 2024-11-21T06:20:36.470
Link: CVE-2021-39935
Redhat
No data.