312
VMScore

CVE-2022-2235

Published: 01/07/2022 Updated: 13/07/2022
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Insufficient sanitization in GitLab EE's external issue tracker affecting all versions from 14.5 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 allows an malicious user to perform cross-site scripting when a victim clicks on a maliciously crafted ZenTao link

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab 15.1.0

gitlab gitlab