Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mxgw-4fpv-6f32

Опубликовано: 02 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Insufficient sanitization in GitLab EE's external issue tracker affecting all versions from 14.5 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1 allows an attacker to perform cross-site scripting when a victim clicks on a maliciously crafted ZenTao link

Insufficient sanitization in GitLab EE's external issue tracker affecting all versions from 14.5 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1 allows an attacker to perform cross-site scripting when a victim clicks on a maliciously crafted ZenTao link

EPSS

Процентиль: 54%
0.0031
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 8.7
ubuntu
больше 3 лет назад

Insufficient sanitization in GitLab EE's external issue tracker affecting all versions from 14.5 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1 allows an attacker to perform cross-site scripting when a victim clicks on a maliciously crafted ZenTao link

CVSS3: 8.7
nvd
больше 3 лет назад

Insufficient sanitization in GitLab EE's external issue tracker affecting all versions from 14.5 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1 allows an attacker to perform cross-site scripting when a victim clicks on a maliciously crafted ZenTao link

CVSS3: 8.7
debian
больше 3 лет назад

Insufficient sanitization in GitLab EE's external issue tracker affect ...

EPSS

Процентиль: 54%
0.0031
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79