← Back

CVE-2018-18643

nvd nist
Published: Apr 25, 2019Modified: Nov 21, 2024

JSON object

Loading...
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

GitLab CE & EE 11.2 and later and before 11.5.0-rc12, 11.4.6, and 11.3.10 have Persistent XSS.

Affected (32)

Products: Gitlab: Gitlab
1 product
Gitlab
Configuration A
32 vulnerable
Vulnerable SoftwareAffected Versions
Gitlab
Up to 11.2.0
From 11.3.0 to 11.3.10
From 11.4.0 to 11.4.6
From 11.4.7 to 11.4.9
Up to 11.2.0
From 11.3.0 to 11.3.10
From 11.4.0 to 11.4.6
From 11.4.7 to 11.4.9
Version 11.5.0
Version 11.5.0
Version 11.5.0 rc10
Version 11.5.0 rc10
Version 11.5.0 rc11
Version 11.5.0 rc11
Version 11.5.0 rc1
Version 11.5.0 rc1
Version 11.5.0 rc2
Version 11.5.0 rc2
Version 11.5.0 rc3
Version 11.5.0 rc3
Version 11.5.0 rc4
Version 11.5.0 rc4
Version 11.5.0 rc5
Version 11.5.0 rc5
Version 11.5.0 rc6
Version 11.5.0 rc6
Version 11.5.0 rc7
Version 11.5.0 rc7
Version 11.5.0 rc8
Version 11.5.0 rc8
Version 11.5.0 rc9
Version 11.5.0 rc9

References (6)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.