CVE-2022-2251
MEDIUMGitlab Runner < 15.3.5 - OS Command Injection
Title source: ruleDescription
Improper sanitization of branch names in GitLab Runner affecting all versions prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows a user who creates a branch with a specially crafted name and gets another user to trigger a pipeline to execute commands in the runner as that other user.
Scores
CVSS v3
4.8
EPSS
0.0220
EPSS Percentile
84.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:N
Classification
CWE
CWE-78
Status
published
Affected Products (1)
gitlab/runner
< 15.3.5
Timeline
Published
Jan 17, 2023
Tracked Since
Feb 18, 2026