Medium severity5.3NVD Advisory· Published Mar 3, 2021· Updated Jun 17, 2026
CVE-2021-22188
CVE-2021-22188
Description
An issue has been discovered in GitLab affecting all versions starting with 13.0. Confidential issue titles in Gitlab were readable by an unauthorised user via branch logs.
Affected products
5cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*+ 3 more
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*range: >=13.0.0,<13.6.7
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: >=13.0.0,<13.6.7
- (no CPE)range: >=13.0
- (no CPE)range: >=13.8, <13.8.4
Patches
Vulnerability mechanics
References
3- gitlab.com/gitlab-org/cves/-/blob/master/2021/CVE-2021-22188.jsonnvdVendor Advisory
- hackerone.com/reports/916340nvdPermissions RequiredThird Party Advisory
- gitlab.com/gitlab-org/gitlab/-/issues/227040nvdBroken Link
News mentions
0No linked articles in our index yet.