Vulnerabilities > CVE-2021-22253 - Incorrect Authorization vulnerability in Gitlab

047910
CVSS 4.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
SINGLE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
PARTIAL

Summary

Improper authorization in GitLab EE affecting all versions since 13.4 allowed a user who previously had the necessary access to trigger deployments to protected environments under specific conditions after the access has been removed

Vulnerable Configurations

Part Description Count
Application
Gitlab
159

Common Weakness Enumeration (CWE)