Security Advisory

CVE-2020-13314

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-09-14 19:50:28
Last updated 2024-08-04 12:18:17
Assigner GitLab
CVSS score 3.7
State PUBLISHED

Description

A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab Omniauth endpoint allowed a malicious user to submit content to be displayed back to the user within error messages.