CVE-2022-1413: High severity gitlab vulnerability
Missing input masking in GitLab CE/EE affecting all versions starting from 1.0.2 before 14.8.6, all versions from 14.9.0 before 14.9.4, and all versions from 14.10.0 before 14.10.1 causes potentially sensitive integration properties to be disclosed in the web interface
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-1413?
CVE-2022-1413 is rated as a medium severity vulnerability due to its potential to disclose sensitive information.
How do I fix CVE-2022-1413?
To fix CVE-2022-1413, upgrade to GitLab CE/EE version 14.8.6, 14.9.4, or 14.10.1 or later.
Which versions are affected by CVE-2022-1413?
CVE-2022-1413 affects GitLab CE/EE versions starting from 1.0.2 to 14.8.6, from 14.9.0 to before 14.9.4, and 14.10.0 to before 14.10.1.
What type of information is exposed by CVE-2022-1413?
CVE-2022-1413 can potentially expose sensitive integration properties in the web interface.
Is CVE-2022-1413 applicable to both GitLab CE and EE?
Yes, CVE-2022-1413 affects both GitLab Community Edition (CE) and Enterprise Edition (EE) versions.