CVE-2022-0244: GitLab
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
An issue has been discovered in GitLab CE/EE affecting all versions starting with 14.5. Arbitrary file read was possible by importing a group was due to incorrect handling of file.
Affected products
- GitLab GitLab: from 14.5, up to and including 14.5.3; from 14.6, up to and including 14.6.2
Published 2022-01-18. Last modified 2026-06-17.