Security Advisory

CVE-2021-22186

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-03-24 16:42:06
Last updated 2024-08-03 18:37:17
Assigner GitLab
CVSS score 4.9
State PUBLISHED

Description

An authorization issue in GitLab CE/EE version 9.4 and up allowed a group maintainer to modify group CI/CD variables which should be restricted to group owners