GitLab EE Vulnerability: Verbose Error Message Discloses Private Email Address of Invited User

GitLab EE Vulnerability: Verbose Error Message Discloses Private Email Address of Invited User

CVE-2021-22249 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

A verbose error message in GitLab EE affecting all versions since 12.2 could disclose the private email address of a user invited to a group

Learn more about our User Device Pen Test.