yvvdwf
8 exploits
Active since Aug 2020
GitLab CE/EE <15.1.5-15.3.1 - Authenticated RCE
CVSS 9.9
GitLab 12.9.0-13.0.11 - Cross-Site Scripting in Issue Reference Tooltip
CVSS 7.3
GitLab < 13.2.10, 13.3.7, 13.4.2 - Stored Cross-Site Scripting in CI Job Log
CVSS 8.7
GitLab 13.10-13.10.5 - Stored Cross-Site Scripting in Blob Viewer of Notebooks
CVSS 6.1
GitLab < 15.1.6, 15.2-15.2.4, 15.3-15.3.2 - Server-Side Request Forgery via Jupyter Notebook Viewer
CVSS 6.4
GitLab CE/EE <15.1.6-15.3.2 - Authenticated XSS
CVSS 7.3
GitLab CE/EE <15.2.4-15.3.2 - Info Disclosure
CVSS 4.3
GitLab CE/EE <15.1.6, <15.2.4, <15.3.2 - XSS
CVSS 7.3