CVE-2021-22242
25.08.2021, 19:15
Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown
Vendor | Product | Version |
---|---|---|
gitlab | gitlab | 11.4.0 ≤ 𝑥 < 13.12.9 |
gitlab | gitlab | 11.4.0 ≤ 𝑥 < 13.12.9 |
gitlab | gitlab | 14.0.0 ≤ 𝑥 < 14.0.7 |
gitlab | gitlab | 14.0.0 ≤ 𝑥 < 14.0.7 |
gitlab | gitlab | 14.1.0 ≤ 𝑥 < 14.1.2 |
gitlab | gitlab | 14.1.0 ≤ 𝑥 < 14.1.2 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References