Client-Side Code Execution Vulnerability in GitLab VSCode Extension
CVE-2021-22195
8.6HIGH
What is CVE-2021-22195?
A vulnerability exists in the GitLab VSCode Extension versions 3.15.0 and earlier that allows attackers to execute arbitrary code on the user's system. By exploiting this flaw, an attacker can leverage malicious payloads leading to unauthorized operations, potentially compromising user data and system integrity. Users are encouraged to update to the latest version to mitigate this risk and enhance their security posture.
Affected Version(s)
gitlab-vscode-extension <=3.15.0