Medium severity4.3NVD Advisory· Published Oct 21, 2022· Updated Jun 17, 2026
CVE-2022-3639
CVE-2022-3639
Description
A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions from 10.8 before 15.1.6, all versions starting from 15.2 before 15.2.4, all versions starting from 15.3 before 15.3.2. Improper data handling on branch creation could have been used to trigger high CPU usage.
Affected products
4cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:*range: >=10.8.0,<15.1.6
- (no CPE)range: >=10.8, <15.1.6
- Range: <15.1.6, 15.2<15.2.4, 15.3<15.3.2
Patches
Vulnerability mechanics
References
2- gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-3639.jsonnvdThird Party AdvisoryVDB Entry
- gitlab.com/gitlab-org/gitlab/-/issues/366876nvdBroken Link
News mentions
0No linked articles in our index yet.