← back
CVE-2021-39890low

CVE-2021-39890

8Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 3.1epss 1.1%
exploitation probability
1.1%top 38% of all CVEs
observed exploitation
nono source reports it
It was possible to bypass 2FA for LDAP users and access some specific pages with Basic Authentication in GitLab 14.1.1 and above.
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Affected products
GitLab · GitLab