Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hfx3-365h-vfrv

Опубликовано: 11 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions, could have allowed an authenticated user to perform server-side request forgery against internal services by bypassing protections in the Git repository import functionality.

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions, could have allowed an authenticated user to perform server-side request forgery against internal services by bypassing protections in the Git repository import functionality.

EPSS

Процентиль: 3%
0.00015
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 2 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions, could have allowed an authenticated user to perform server-side request forgery against internal services by bypassing protections in the Git repository import functionality.

CVSS3: 4.3
nvd
около 2 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions, could have allowed an authenticated user to perform server-side request forgery against internal services by bypassing protections in the Git repository import functionality.

CVSS3: 4.3
debian
около 2 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

EPSS

Процентиль: 3%
0.00015
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-918