Описание
GitLab 9.5.9 through 12.9 is vulnerable to stored XSS in an admin notification feature.
Уязвимые конфигурации
Конфигурация 1Версия от 9.5.9 (включая) до 12.7.8 (исключая)Версия от 9.5.9 (включая) до 12.7.8 (исключая)Версия от 12.8.0 (включая) до 12.8.8 (исключая)Версия от 12.8.0 (включая) до 12.8.8 (исключая)Версия от 12.9.0 (включая) до 12.9.1 (исключая)Версия от 12.9.0 (включая) до 12.9.1 (исключая)
Одно из
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 43%
0.00552
Низкий
4.8 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 4.8
ubuntu
больше 6 лет назад
GitLab 9.5.9 through 12.9 is vulnerable to stored XSS in an admin notification feature.
CVSS3: 4.8
debian
больше 6 лет назад
GitLab 9.5.9 through 12.9 is vulnerable to stored XSS in an admin noti ...
github
около 4 лет назад
GitLab 9.5.9 through 12.9 is vulnerable to stored XSS in an admin notification feature.
EPSS
Процентиль: 43%
0.00552
Низкий
4.8 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
CWE-79