A regular expression denial of service issue in GitLab versions 8.13 to 14.2.5, 14.3.0 to 14.3.3 and 14.4.0 could cause excessive usage of resources when a specially crafted username was used when provisioning a new user
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://gitlab.com/gitlab-org/gitlab/-/issues/289948 | broken link |
https://gitlab.com/gitlab-org/cves/-/blob/master/2021/CVE-2021-39914.json | vendor advisory |