QID 375695
Date Published: 2021-07-15
QID 375695: GitLab Client-Side Code Injection Vulnerability(gitlab-14-0-2, 13-12-6, 13-11-6)
GitLab is a web-based DevOps lifecycle tool that provides a Git repository manager providing wiki, issue-tracking and continuous integration and deployment pipeline features, using an open-source license, developed by GitLab Inc.
GitLab Community Edition and Enterprise Edition is vulnerable to Client-Side code injection vulnerability. (CVE-2021-22223)
Affected versions:
11.9.0-13.11.5
13.12.0-13.12.5
14.0.0-14.0.1
QID Detection Logic:(Authenticated)
The QID checks for vulnerable version of Gitlab using 'gitlab-rake gitlab:env:info' command.
Successful exploitation of the vulnerability allows a specially crafted feature flag name to PUT requests on behalf of other users via clicking on a link
Solution
The vendor has released patch, For more information please visit: GitLab 14.0.2 Security Release
Vendor References
- Gitlab Security Release -
about.gitlab.com/releases/2021/07/01/security-release-gitlab-14-0-2-released/#stored-xss-on-audit-log
CVEs related to QID 375695
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Gitlab Security Release |
|