Security Advisory

CVE-2022-2992

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-10-17 00:00:00
Last updated 2025-05-14 14:27:30
Assigner GitLab
State PUBLISHED

Description

A vulnerability in GitLab CE/EE affecting all versions from 11.10 prior to 15.1.6, 15.2 to 15.2.4, 15.3 to 15.3.2 allows an authenticated user to achieve remote code execution via the Import from GitHub API endpoint.