'; } else{ echo ''; } echo '
|
|
|||
Release Date:2025/9/15
Rule Name:CVE-2021-22214: Gitlab Server-side Request Forgery Vulnerability
Severity:high
CVE ID:CVE-2021-22214
| Descripiton:
|
Gitlab is a Warehouse application developed by Ruby On Rails, a self-hosted, Git (version control system) project. The program can be used to check the contents of the project, submit history, bug list, etc. Gitlab CE EE exists security vulnerabilities, which exists when there is a request for fake vulnerability when the WebHook request for the internal network is enabled. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
| Solution:
|
Update vendor patches.