CVE-2021-22181

HIGH

GitLab 11.8.0-13.10.4 - Denial of Service via Recursive Pipeline Relationship

Title source: llm
STIX 2.1

Description

A denial of service vulnerability in GitLab CE/EE affecting all versions since 11.8 allows an attacker to create a recursive pipeline relationship and exhaust resources.

References (2)

Core 2
Core References

Scores

CVSS v3 7.7
EPSS 0.0017
EPSS Percentile 37.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

Details

CWE
CWE-400
Status published
Products (1)
gitlab/gitlab 11.8.0 - 13.10.5 (2 CPE variants)
Published Jun 11, 2021
Tracked Since Feb 18, 2026