Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-79rf-9vhj-jq9w

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

EPSS

Процентиль: 35%
0.0015
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 5 лет назад

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

CVSS3: 5.5
nvd
больше 5 лет назад

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

CVSS3: 5.5
debian
больше 5 лет назад

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13 ...

EPSS

Процентиль: 35%
0.0015
Низкий

Дефекты

CWE-79