CSRF in runner administration page in all versions of GitLab CE/EE allows an attacker who's able to target GitLab instance administrators to pause/resume runners. Affected versions are >13.5.0, <13.5.2,>13.4.0, <13.4.5,<13.3.9.
Publication date: Wed, 18 Nov 2020 00:15:00 +0000