Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w75c-wmw7-rfpv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.5

Описание

An input validation problem was discovered in the GitHub service integration which could result in an attacker being able to make arbitrary POST requests in a GitLab instance's internal network. This vulnerability was addressed in 12.1.2, 12.0.4, and 11.11.6.

An input validation problem was discovered in the GitHub service integration which could result in an attacker being able to make arbitrary POST requests in a GitLab instance's internal network. This vulnerability was addressed in 12.1.2, 12.0.4, and 11.11.6.

EPSS

Процентиль: 25%
0.00083
Низкий

3.5 Low

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 3.5
ubuntu
почти 6 лет назад

An input validation problem was discovered in the GitHub service integration which could result in an attacker being able to make arbitrary POST requests in a GitLab instance's internal network. This vulnerability was addressed in 12.1.2, 12.0.4, and 11.11.6.

CVSS3: 3.5
nvd
почти 6 лет назад

An input validation problem was discovered in the GitHub service integration which could result in an attacker being able to make arbitrary POST requests in a GitLab instance's internal network. This vulnerability was addressed in 12.1.2, 12.0.4, and 11.11.6.

CVSS3: 3.5
debian
почти 6 лет назад

An input validation problem was discovered in the GitHub service integ ...

EPSS

Процентиль: 25%
0.00083
Низкий

3.5 Low

CVSS3

Дефекты

CWE-20