Loading HuntDB...

GHSA-xgmj-r659-f4c7

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2. A reflected XSS was possible when creating specific PlantUML diagrams that allowed the attacker to perform arbitrary actions on behalf of victims.

Related CVEs

Key Information

GHSA ID
GHSA-xgmj-r659-f4c7
Published
August 2, 2023 3:30 AM
Last Modified
April 4, 2024 6:29 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 16, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.