An issue has been discovered in GitLab EE affecting all versions starting from 15.6 before 15.6.1. It was possible to create a malicious README page due to improper neutralisation of user supplied input.
2023-01-26T21:18:06.410
2025-04-01T18:15:29.050
Modified
CVSSv3.1: 5.7 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | gitlab | gitlab | 15.6.0 | Yes |
Application | gitlab | gitlab | 15.6.0 | Yes |