CVE-2022-2244: Medium severity gitlab vulnerability
An improper authorization vulnerability in GitLab EE/CE affecting all versions from 14.8 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1, allows project memebers with reporter role to manage issues in project's error tracking feature.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-2244?
CVE-2022-2244 is classified as a medium severity vulnerability due to improper authorization risks.
How do I fix CVE-2022-2244?
To fix CVE-2022-2244, update GitLab to versions 14.10.5, 15.0.4, or 15.1.1 or later.
Who is affected by CVE-2022-2244?
CVE-2022-2244 affects all versions of GitLab EE/CE from 14.8 to prior versions of 14.10.5, 15.0 to prior versions of 15.0.4, and 15.1 up to 15.1.0.
What type of vulnerability is CVE-2022-2244?
CVE-2022-2244 is an improper authorization vulnerability.
What roles are impacted by CVE-2022-2244?
CVE-2022-2244 allows project members with the reporter role to manage issues in the project's error tracking feature.