CVE-2021-22233: Medium severity gitlab vulnerability
Published Jul 7, 2021
·Updated
An information disclosure vulnerability in GitLab EE versions 13.10 and later allowed a user to read project details
Affected Software
3 affected components
GitLab GitLab>=13.10.0<13.11.6
GitLab GitLab>=13.12.0<13.12.6
GitLab GitLab>=14.0.0<14.0.2
Event History
Jul 7, 2021
CVE Published
via MITRE·01:22 PM
Data Sourced
via MITRE·01:22 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-22233?
CVE-2021-22233 is classified as a medium severity vulnerability due to its potential for information disclosure.
2
How do I fix CVE-2021-22233?
To fix CVE-2021-22233, upgrade your GitLab EE installation to version 13.11.6, 13.12.6, or later versions.
3
Which versions of GitLab are affected by CVE-2021-22233?
CVE-2021-22233 affects GitLab EE versions from 13.10.0 up to 14.0.2, excluding those mentioned in the fixed versions.
4
What type of vulnerability is CVE-2021-22233?
CVE-2021-22233 is an information disclosure vulnerability allowing unauthorized users to read project details.
5
Is there a workaround for CVE-2021-22233?
There are no specific workarounds for CVE-2021-22233, so upgrading to a patched version is the recommended solution.