A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. When viewing an XML file in a repository in "raw" mode, it can be made to render as HTML if viewed under specific circumstances
Metrics
Affected Vendors & Products
References
History
Wed, 29 Jan 2025 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: GitLab
Published: 2023-05-03T00:00:00.000Z
Updated: 2025-01-29T21:46:34.969Z
Reserved: 2023-04-04T00:00:00.000Z
Link: CVE-2023-1836

Updated: 2024-08-02T06:05:26.777Z

Status : Modified
Published: 2023-05-03T21:15:17.807
Modified: 2024-11-21T07:39:59.567
Link: CVE-2023-1836

No data.