Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-6186

Опубликовано: 13 авг. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 8.7

Описание

An issue has been discovered in GitLab CE/EE affecting all versions from 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed authenticated users to achieve account takeover by injecting malicious HTML into work item names.

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

ignored

jammy

DNE

noble

DNE

plucky

DNE

upstream

not-affected

debian: Vulnerable code introduced later

Показывать по

8.7 High

CVSS3

Связанные уязвимости

CVSS3: 8.7
nvd
2 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed authenticated users to achieve account takeover by injecting malicious HTML into work item names.

CVSS3: 8.7
debian
2 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 8.7
github
2 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed authenticated users to achieve account takeover by injecting malicious HTML into work item names.

CVSS3: 8.7
fstec
4 месяца назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab EE/CE, связанная с недостаточной защитой структуры веб-страницы, позволяющая нарушителю проводить межсайтовые сценарные атаки (XSS)

8.7 High

CVSS3