CVE-2021-22203 log

Severity High
Remote Yes
Type Arbitrary filesystem access
An issue has been discovered in GitLab CE/EE affecting all versions starting with 13.7.9. A specially crafted Wiki page allowed attackers to read arbitrary files on the server. The issue is fixed in GitLab versions 13.10.1, 13.9.5 and 13.8.7.
Group Package Affected Fixed Severity Status Ticket
AVG-1770 gitlab 13.9.4-1 13.10.1-1 Critical Fixed