AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-2229

HIGH · CVSS 7.5 EPSS 1.24%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-07-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-2229
Severity
HIGH
CVSS
7.5
EPSS
1.24%
GitLab

Original NVD Description

An improper authorization issue in GitLab CE/EE affecting all versions from 13.7 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1 allows an attacker to extract the value of an unprotected variable they know the name of in public projects or private projects they're a member of.