CyberRota Analysis
AI analysis pending.
CVE
CVE-2021-39889
Severity
MEDIUM
CVSS
4.3
EPSS
0.83%
GitLab
Original NVD Description
In all versions of GitLab EE since version 14.1, due to an insecure direct object reference vulnerability, an endpoint may reveal the protected branch name to a malicious user who makes a crafted API call with the ID of the protected branch.