Security Advisory
CVE-2021-22186
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
An authorization issue in GitLab CE/EE version 9.4 and up allowed a group maintainer to modify group CI/CD variables which should be restricted to group owners