mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-29 17:50:34 +00:00
786 B
786 B
CVE-2022-4201
Description
A blind SSRF in GitLab CE/EE affecting all from 11.3 prior to 15.4.6, 15.5 prior to 15.5.5, and 15.6 prior to 15.6.1 allows an attacker to connect to local addresses when configuring a malicious GitLab Runner.
POC
Reference
- https://gitlab.com/gitlab-org/gitlab/-/issues/30376
- https://gitlab.com/gitlab-org/gitlab/-/issues/30376
Github
No PoCs found on GitHub currently.