mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-01 23:31:36 +02:00
762 B
762 B
CVE-2021-22224
Description
A cross-site request forgery vulnerability in the GraphQL API in GitLab since version 13.12 and before versions 13.12.6 and 14.0.2 allowed an attacker to call mutations as the victim
POC
Reference
- https://gitlab.com/gitlab-org/gitlab/-/issues/324397
- https://gitlab.com/gitlab-org/gitlab/-/issues/324397
Github
No PoCs found on GitHub currently.