VYPR
Medium severity4.3NVD Advisory· Published Aug 23, 2021· Updated Jun 17, 2026

CVE-2021-22251

CVE-2021-22251

Description

Improper validation of invited users' email address in GitLab EE affecting all versions since 12.2 allowed projects to add members with email address domain that should be blocked by group settings

Affected products

4

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.