PT-2021-14895 · Gitlab · Gitlab

Published

2021-03-26

·

Updated

2024-03-06

·

CVE-2021-22184

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: GitLab versions 12.8 and later
Description: An information disclosure issue allowed a user with access to the server logs to see sensitive information that wasn't properly redacted.
Recommendations: For GitLab versions 12.8 and later, update to a version that includes the fix for this issue to prevent sensitive information from being disclosed through server logs.

Fix

Insertion into Log File

Weakness Enumeration

Related Identifiers

BIT-GITLAB-2021-22184
CVE-2021-22184

Affected Products

Gitlab