CVE Vulnerabilities

CVE-2021-22258

Published: Oct 05, 2021 | Modified: Oct 09, 2021
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The project import/export feature in GitLab 8.9 and greater could be used to obtain otherwise private email addresses

Affected Software

Name Vendor Start Version End Version
Gitlab Gitlab 8.9.0 (including) 14.0.9 (excluding)
Gitlab Gitlab 14.1.0 (including) 14.1.4 (excluding)
Gitlab Gitlab 14.2.0 (including) 14.2.2 (excluding)
Gitlab Ubuntu esm-apps/xenial *
Gitlab Ubuntu xenial *

References