vulnerability

Gitlab Gitlab: CVE-2018-19574: Improper Neutralization of Input During Web Page Generation

Severity
3
CVSS
(AV:N/AC:M/Au:S/C:N/I:P/A:N)
Published
2019-07-10
Added
2025-04-22
Modified
2025-05-05

Description

GitLab CE/EE, versions 7.6 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an XSS vulnerability in the OAuth authorization page.

Solution

gitlab-gitlab-cve-2018-19574-solution
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.