Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ccj4-qhw4-4rrm

Опубликовано: 10 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.2

Описание

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 prior to 17.2.9, from 17.3 prior to 17.3.5, and from 17.4 prior to 17.4.2. Instances with Product Analytics Dashboard configured and enabled could be vulnerable to SSRF attacks.

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 prior to 17.2.9, from 17.3 prior to 17.3.5, and from 17.4 prior to 17.4.2. Instances with Product Analytics Dashboard configured and enabled could be vulnerable to SSRF attacks.

EPSS

Процентиль: 7%
0.00031
Низкий

8.2 High

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 8.2
nvd
10 месяцев назад

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 prior to 17.2.9, from 17.3 prior to 17.3.5, and from 17.4 prior to 17.4.2. Instances with Product Analytics Dashboard configured and enabled could be vulnerable to SSRF attacks.

CVSS3: 8.2
debian
10 месяцев назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 8.2
fstec
10 месяцев назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостаточной проверкой поступающих запросов, позволяющая нарушителю осуществить SSRF-атаку

EPSS

Процентиль: 7%
0.00031
Низкий

8.2 High

CVSS3

Дефекты

CWE-918