Описание
Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the CI job component resulting in persistent cross site scripting.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
gitlab | fixed | 10.5.5+dfsg-1 | package |
Примечания
https://about.gitlab.com/2018/01/16/gitlab-10-dot-3-dot-4-released/
EPSS
Процентиль: 25%
0.0008
Низкий
Связанные уязвимости
CVSS3: 6.1
ubuntu
около 7 лет назад
Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the CI job component resulting in persistent cross site scripting.
CVSS3: 6.1
nvd
около 7 лет назад
Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the CI job component resulting in persistent cross site scripting.
CVSS3: 6.1
github
около 3 лет назад
Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the CI job component resulting in persistent cross site scripting.
EPSS
Процентиль: 25%
0.0008
Низкий