ZeroHour

CVE-2021-22251

PoC
CVSS 3.1
4.3 medium
EPSS
<1%p55
Published
()
Modified
Description

Improper validation of invited users' email address in GitLab EE affecting all versions since 12.2 allowed projects to add members with email address domain that should be blocked by group settings

Vendors
gitlab
Products
gitlab
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.