Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v6xp-h7ww-6xqf

Опубликовано: 12 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.4

Описание

An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could potentially perform an open redirect against a given releases API endpoint.

An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could potentially perform an open redirect against a given releases API endpoint.

EPSS

Процентиль: 0%
0.00006
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.4
ubuntu
6 месяцев назад

An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could potentially perform an open redirect against a given releases API endpoint.

CVSS3: 6.4
nvd
6 месяцев назад

An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could potentially perform an open redirect against a given releases API endpoint.

CVSS3: 6.4
debian
6 месяцев назад

An issue was discovered in GitLab CE/EE affecting all versions from 11 ...

CVSS3: 6.4
fstec
9 месяцев назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю проводить фишинг-атаки

EPSS

Процентиль: 0%
0.00006
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-601