Loading
When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab affecting all versions starting from 10.5 was possible to exploit for an unauthenticated attacker even on a GitLab instance where registration is disabled
Use CWE-918, Gitlab vendor hub and Gitlab product page to widen CVE-2021-22175 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-5173, CVE-2026-4922 and CVE-2026-5816 for nearby disclosures in the same product family.