CVE-2021-22253

Source
https://nvd.nist.gov/vuln/detail/CVE-2021-22253
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-22253.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-22253
Aliases
Related
Published
2021-08-23T20:15:13Z
Modified
2024-10-12T07:22:47.568665Z
Severity
  • 5.4 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L CVSS Calculator
Summary
[none]
Details

Improper authorization in GitLab EE affecting all versions since 13.4 allowed a user who previously had the necessary access to trigger deployments to protected environments under specific conditions after the access has been removed

References

Affected packages

Git / gitlab.com/gitlab-org/gitlab

Affected ranges

Type
GIT
Repo
https://gitlab.com/gitlab-org/gitlab
Events

Affected versions

v14.*

v14.0.0-ee
v14.0.1-ee
v14.0.2-ee
v14.0.3-ee
v14.0.4-ee
v14.0.5-ee
v14.0.6-ee