An issue has been discovered in GitLab affecting all versions starting from 17.1 to 17.1.7, 17.2 prior to 17.2.5 and 17.3 prior to 17.3.2. A crafted URL could be used to trick a victim to trust an attacker controlled application.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gitlab | Gitlab | 17.1.0 (including) | 17.1.7 (excluding) |
Gitlab | Gitlab | 17.2.0 (including) | 17.2.5 (excluding) |
Gitlab | Gitlab | 17.3.0 (including) | 17.3.2 (excluding) |
Gitlab | Ubuntu | esm-apps/xenial | * |
Gitlab | Ubuntu | upstream | * |