CVE-2022-2281: Medium severity gitlab vulnerability
An information disclosure vulnerability in GitLab EE affecting all versions from 12.5 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1, allows disclosure of release titles if group milestones are associated with any project releases.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-2281?
CVE-2022-2281 is classified as an information disclosure vulnerability.
How do I fix CVE-2022-2281?
To fix CVE-2022-2281, upgrade GitLab EE to version 14.10.5, 15.0.4, or 15.1.1 or later.
What versions are affected by CVE-2022-2281?
CVE-2022-2281 affects all GitLab EE versions from 12.5 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1.
What type of vulnerability is CVE-2022-2281?
CVE-2022-2281 is an information disclosure vulnerability specifically related to the disclosure of release titles.
What impact does CVE-2022-2281 have on GitLab users?
CVE-2022-2281 allows unauthorized users to potentially access and disclose information about project release titles.