Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ccj4-qhw4-4rrm

Опубликовано: 10 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.2

Описание

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 prior to 17.2.9, from 17.3 prior to 17.3.5, and from 17.4 prior to 17.4.2. Instances with Product Analytics Dashboard configured and enabled could be vulnerable to SSRF attacks.

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 prior to 17.2.9, from 17.3 prior to 17.3.5, and from 17.4 prior to 17.4.2. Instances with Product Analytics Dashboard configured and enabled could be vulnerable to SSRF attacks.

EPSS

Процентиль: 4%
0.00021
Низкий

8.2 High

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 8.2
nvd
8 месяцев назад

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 prior to 17.2.9, from 17.3 prior to 17.3.5, and from 17.4 prior to 17.4.2. Instances with Product Analytics Dashboard configured and enabled could be vulnerable to SSRF attacks.

CVSS3: 8.2
debian
8 месяцев назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 8.2
fstec
9 месяцев назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостаточной проверкой поступающих запросов, позволяющая нарушителю осуществить SSRF-атаку

EPSS

Процентиль: 4%
0.00021
Низкий

8.2 High

CVSS3

Дефекты

CWE-918