A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. When viewing an XML file in a repository in "raw" mode, it can be made to render as HTML if viewed under specific circumstances
Metrics
Affected Vendors & Products
References
History
Wed, 29 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitLab
Published: 2023-05-03T00:00:00.000Z
Updated: 2025-01-29T21:46:34.969Z
Reserved: 2023-04-04T00:00:00.000Z
Link: CVE-2023-1836
Updated: 2024-08-02T06:05:26.777Z
Status : Modified
Published: 2023-05-03T21:15:17.807
Modified: 2024-11-21T07:39:59.567
Link: CVE-2023-1836
No data.
ReportizFlow