For GitLab Runner before 13.0.12, 13.1.6, 13.2.3, by replacing dockerd with a malicious server, the Shared Runner is susceptible to SSRF.
{ "binaries": [ { "binary_version": "10.5.0+dfsg-2", "binary_name": "gitlab-runner" } ] }
{ "binaries": [ { "binary_version": "11.2.0+dfsg-2ubuntu1", "binary_name": "gitlab-runner" } ] }