CVE-2021-39935: GitLab Community and Enterprise Editions Server-Side Request Forgery (SSRF) Vulnerability
An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.5 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2. Unauthorized external users could perform Server Side Requests via the CI Lint API
Other sources
GitLab Community and Enterprise Editions contain a server-side request forgery vulnerability which could allow unauthorized external users to perform Server Side Requests via the CI Lint API.
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
GitLab CE/EEto a version that resolves this vulnerability.Fixed in 14.3.6 - Upgrade
Upgrade
GitLab CE/EEto a version that resolves this vulnerability.Fixed in 14.4.4 - Upgrade
Upgrade
GitLab CE/EEto a version that resolves this vulnerability.Fixed in 14.5.2 - Compensating control
Follow applicable BOD 22-01 guidance for cloud services.
- Compensating control
Discontinue use of the product if mitigations are unavailable.
Event History
Frequently Asked Questions
What is the severity of CVE-2021-39935?
CVE-2021-39935 has been rated as a high severity vulnerability due to its potential for unauthorized access.
How do I fix CVE-2021-39935?
To remediate CVE-2021-39935, update GitLab to version 14.3.6 or later, 14.4.4 or later, or 14.5.2 or later.
Who is affected by CVE-2021-39935?
CVE-2021-39935 affects all GitLab CE/EE versions starting from 10.5.0 to 14.3.6, and certain versions in the 14.4.x and 14.5.x series.
What is the impact of CVE-2021-39935?
The impact of CVE-2021-39935 allows unauthorized external users to perform Server Side Requests via the CI Lint API.
Is there a workaround for CVE-2021-39935?
There is no known workaround for CVE-2021-39935; the recommended solution is to upgrade to a patched version of GitLab.