Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-7739

Опубликовано: 13 авг. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 8.7

Описание

An issue has been discovered in GitLab CE/EE affecting all versions from 18.2 before 18.2.2 that, under certain conditions, could have allowed authenticated users to achieve stored cross-site scripting by injecting malicious HTML content in scoped label descriptions.

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

ignored

jammy

DNE

noble

DNE

plucky

DNE

upstream

not-affected

debian: Vulnerable code introduced later

Показывать по

8.7 High

CVSS3

Связанные уязвимости

CVSS3: 8.7
nvd
2 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 18.2 before 18.2.2 that, under certain conditions, could have allowed authenticated users to achieve stored cross-site scripting by injecting malicious HTML content in scoped label descriptions.

CVSS3: 8.7
debian
2 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 8.7
github
2 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 18.2 before 18.2.2 that, under certain conditions, could have allowed authenticated users to achieve stored cross-site scripting by injecting malicious HTML content in scoped label descriptions.

CVSS3: 8.7
fstec
3 месяца назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab EE/CE, связанная с недостаточной защитой структуры веб-страницы, позволяющая нарушителю проводить межсайтовые сценарные атаки (XSS)

8.7 High

CVSS3