CVE-2021-22226 — Gitlab vulnerability
5 documents5 sources
Severity
6.5MEDIUMNVD
EPSS
0.2%
top 59.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 6
Latest updateMay 24
Description
Under certain conditions, some users were able to push to protected branches that were restricted to deploy keys in GitLab CE/EE since version 13.9
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:NExploitability: 1.2 | Impact: 5.2
Affected Packages5 packages
🔴Vulnerability Details
2GHSA▶
GHSA-w673-w4h7-244x: Under certain conditions, some users were able to push to protected branches that were restricted to deploy keys in GitLab CE/EE since version 13↗2022-05-24
OSV▶
CVE-2021-22226: Under certain conditions, some users were able to push to protected branches that were restricted to deploy keys in GitLab CE/EE since version 13↗2021-07-06
📋Vendor Advisories
2GitLab▶
CVE-2021-22226: Under certain conditions, some users were able to push to protected branches that were restricted to deploy keys in GitLab CE/EE since version 13.9↗2021-07-06
Debian▶
CVE-2021-22226: gitlab - Under certain conditions, some users were able to push to protected branches tha...↗2021