#VU60320 Input validation error in Gitlab Community Edition and GitLab Enterprise Edition - CVE-2022-0488
Published: February 4, 2022 / Updated: February 7, 2022
Gitlab Community Edition
GitLab Enterprise Edition
GitLab, Inc
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input. A remote authenticated attacker can use a specific amount of block-quotes, trigger a timeout on a page with markdown and perform a denial of service (DoS) attack.