cve/2021/CVE-2021-22223.md
2025-09-29 21:09:30 +02:00

1009 B

CVE-2021-22223

Description

Client-Side code injection through Feature Flag name in GitLab CE/EE starting with 11.9 allows a specially crafted feature flag name to PUT requests on behalf of other users via clicking on a link

POC

Reference

No PoCs from references.

Github