Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-22223

Client-Side code injection through Feature Flag name in GitLab CE/EE starting with 11.9 allows a specially crafted feature flag name to PUT requests on behalf of other users via clicking on a link
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.5%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2021-22223
  • Gitlab » Gitlab » Version: 13.10.0
    cpe:2.3:a:gitlab:gitlab:13.10.0
  • Gitlab » Gitlab » Version: 13.10.1
    cpe:2.3:a:gitlab:gitlab:13.10.1
  • Gitlab » Gitlab » Version: 13.10.2
    cpe:2.3:a:gitlab:gitlab:13.10.2
  • Gitlab » Gitlab » Version: 13.10.3
    cpe:2.3:a:gitlab:gitlab:13.10.3
  • Gitlab » Gitlab » Version: 13.10.4
    cpe:2.3:a:gitlab:gitlab:13.10.4
  • Gitlab » Gitlab » Version: 13.10.5
    cpe:2.3:a:gitlab:gitlab:13.10.5
  • Gitlab » Gitlab » Version: 13.11.0
    cpe:2.3:a:gitlab:gitlab:13.11.0
  • Gitlab » Gitlab » Version: 13.11.1
    cpe:2.3:a:gitlab:gitlab:13.11.1
  • Gitlab » Gitlab » Version: 13.11.2
    cpe:2.3:a:gitlab:gitlab:13.11.2
  • Gitlab » Gitlab » Version: 13.11.3
    cpe:2.3:a:gitlab:gitlab:13.11.3
  • Gitlab » Gitlab » Version: 13.11.4
    cpe:2.3:a:gitlab:gitlab:13.11.4
  • Gitlab » Gitlab » Version: 13.11.5
    cpe:2.3:a:gitlab:gitlab:13.11.5
  • Gitlab » Gitlab » Version: 13.12.0
    cpe:2.3:a:gitlab:gitlab:13.12.0
  • Gitlab » Gitlab » Version: 13.12.1
    cpe:2.3:a:gitlab:gitlab:13.12.1
  • Gitlab » Gitlab » Version: 13.12.2
    cpe:2.3:a:gitlab:gitlab:13.12.2
  • Gitlab » Gitlab » Version: 13.12.3
    cpe:2.3:a:gitlab:gitlab:13.12.3
  • Gitlab » Gitlab » Version: 13.12.4
    cpe:2.3:a:gitlab:gitlab:13.12.4
  • Gitlab » Gitlab » Version: 13.12.5
    cpe:2.3:a:gitlab:gitlab:13.12.5
  • Gitlab » Gitlab » Version: 13.9.0
    cpe:2.3:a:gitlab:gitlab:13.9.0
  • Gitlab » Gitlab » Version: 13.9.1
    cpe:2.3:a:gitlab:gitlab:13.9.1
  • Gitlab » Gitlab » Version: 13.9.2
    cpe:2.3:a:gitlab:gitlab:13.9.2
  • Gitlab » Gitlab » Version: 13.9.3
    cpe:2.3:a:gitlab:gitlab:13.9.3
  • Gitlab » Gitlab » Version: 13.9.4
    cpe:2.3:a:gitlab:gitlab:13.9.4
  • Gitlab » Gitlab » Version: 13.9.5
    cpe:2.3:a:gitlab:gitlab:13.9.5
  • Gitlab » Gitlab » Version: 13.9.6
    cpe:2.3:a:gitlab:gitlab:13.9.6
  • Gitlab » Gitlab » Version: 13.9.7
    cpe:2.3:a:gitlab:gitlab:13.9.7
  • Gitlab » Gitlab » Version: 14.0.0
    cpe:2.3:a:gitlab:gitlab:14.0.0
  • Gitlab » Gitlab » Version: 14.0.1
    cpe:2.3:a:gitlab:gitlab:14.0.1


Contact Us

Shodan ® - All rights reserved