Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cxfq-987j-wpfw

Опубликовано: 12 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 2.4

Описание

Missing sanitization of logged exception messages in all versions prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 of GitLab CE/EE causes potential sensitive values in invalid URLs to be logged

Missing sanitization of logged exception messages in all versions prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 of GitLab CE/EE causes potential sensitive values in invalid URLs to be logged

EPSS

Процентиль: 44%
0.00214
Низкий

2.4 Low

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 2.6
ubuntu
почти 4 года назад

Missing sanitization of logged exception messages in all versions prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 of GitLab CE/EE causes potential sensitive values in invalid URLs to be logged

CVSS3: 2.6
nvd
почти 4 года назад

Missing sanitization of logged exception messages in all versions prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 of GitLab CE/EE causes potential sensitive values in invalid URLs to be logged

CVSS3: 2.6
debian
почти 4 года назад

Missing sanitization of logged exception messages in all versions prio ...

EPSS

Процентиль: 44%
0.00214
Низкий

2.4 Low

CVSS3

Дефекты

CWE-532