Логотип exploitDog
bind:CVE-2020-26407
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-26407

Количество 4

Количество 4

ubuntu логотип

CVE-2020-26407

около 5 лет назад

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2020-26407

около 5 лет назад

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2020-26407

около 5 лет назад

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13 ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-79rf-9vhj-jq9w

больше 3 лет назад

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-26407

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

CVSS3: 5.5
0%
Низкий
около 5 лет назад
nvd логотип
CVE-2020-26407

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

CVSS3: 5.5
0%
Низкий
около 5 лет назад
debian логотип
CVE-2020-26407

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13 ...

CVSS3: 5.5
0%
Низкий
около 5 лет назад
github логотип
GHSA-79rf-9vhj-jq9w

A XSS vulnerability exists in Gitlab CE/EE from 12.4 before 13.4.7, 13.5 before 13.5.5, and 13.6 before 13.6.2 that allows an attacker to perform cross-site scripting to other users via importing a malicious project

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу