Security Advisory
CVE-2021-39879
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Missing authentication in all versions of GitLab CE/EE since version 7.11.0 allows an attacker with access to a victims session to disable two-factor authentication