S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
CVE

CVE-2021-22214

8.6
CVSSmedium
Exploitable remotely over the internet · no authentication required.
Description

When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab CE/EE affecting all versions starting from 10.5 was possible to exploit for an unauthenticated attacker even on a GitLab instance where registration is limited

Attack Vector
Network
Privileges Req.
None
User Interaction
None
gitlab
Updated Sep 18, 2026View on NVD →
S4E scanner

CVE-2021-22214 Scanner

Detects 'Server-Side Request Forgery (SSRF)' vulnerability in GitLab affects v. from 10.5 to 13.10.5,from 13.11 to 13.11.5, from 13.12 to 13.12.2.

Used 3.3k times · 5.9k assets checked · domain, ipv4, subdomain

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →