CVE-2022-0740

Publication date

2022-04-04 19:45:59

Family

GitLab

State

PUBLISHED

Description

Incorrect authorization in the Asana integrations branch restriction feature in all versions of GitLab CE/EE starting from version 7.8.0 before 14.7.7, all versions starting from 14.8 before 14.8.5, all versions starting from 14.9 before 14.9.2 makes it possible to close Asana tasks from unrestricted branches.