| ID | CVE-2021-39870 | ||||||
| Sažetak | In all versions of GitLab CE/EE since version 11.11, an instance that has the setting to disable Repo by URL import enabled is bypassed by an attacker making a crafted API call. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:L/Au:S/C:N/I:P/A:N | ||||||
| Zadnje važnije ažuriranje | 09-10-2021 - 03:31 | ||||||
| Objavljeno | 05-10-2021 - 14:15 |

