Security Advisory

CVE-2017-8778

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-05-04 15:00:00
Last updated 2024-08-05 16:48:22
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

GitLab before 8.14.9, 8.15.x before 8.15.6, and 8.16.x before 8.16.5 has XSS via a SCRIPT element in an issue attachment or avatar that is an SVG document.