AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-0427

HIGH · CVSS 7.7 EPSS 0.81%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-03-28 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.7. It affects GitLab.

CVE
CVE-2022-0427
Severity
HIGH
CVSS
7.7
EPSS
0.81%
GitLab

Original NVD Description

Missing sanitization of HTML attributes in Jupyter notebooks in all versions of GitLab CE/EE since version 14.5 allows an attacker to perform arbitrary HTTP POST requests on a user's behalf leading to potential account takeover

Related CVEs

Other vulnerabilities affecting the same vendor(s)