GitLab SSRF exploitation attempt via import feature - possible CVE-2021-22175/CVE-2021-39935
Detects incoming HTTP POST requests to the GitLab '/import' endpoint that attempt to access the internal cloud metadata service (169.254.169.254), indicating an exploitation attempt for vulnerabilities such as CVE-2021-22175 or CVE-2021-39935.
Suricata

