CVE Vulnerabilities

CVE-2023-1787

Published: Apr 05, 2023 | Modified: Nov 21, 2024
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. A search timeout could be triggered if a specific HTML payload was used in the issue description.

Affected Software

Name Vendor Start Version End Version
Gitlab Gitlab 15.9.0 (including) 15.9.4 (excluding)
Gitlab Gitlab 15.10.0 (including) 15.10.0 (including)
Gitlab Ubuntu esm-apps/xenial *
Gitlab Ubuntu upstream *

References