vulnerability

FreeBSD: VID-b9591212-dba7-11e8-9416-001b217b3468 (CVE-2018-18644): Gitlab -- multiple vulnerabilities

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:P/I:N/A:N)
Published
Oct 29, 2018
Added
Oct 30, 2018
Modified
Mar 25, 2026

Description

Gitlab reports: RCE in Gitlab Wiki API SSRF in Hipchat integration Cleartext storage of personal access tokens Information exposure through stack trace error message Persistent XSS autocomplete Information exposure in stored browser history Information exposure when replying to issues through email Persistent XSS in License Management and Security Reports Metrics information disclosure in Prometheus integration Unauthorized changes to a protected branch's access levels

Solution

freebsd-upgrade-package-gitlab-ce
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.