CVE-2021-39906
05.11.2021, 00:15
Improper validation of ipynb files in GitLab CE/EE version 13.5 and above allows an attacker to execute arbitrary JavaScript code on the victim's behalf.
Vendor | Product | Version |
---|---|---|
gitlab | gitlab | 13.5.0 ≤ 𝑥 < 14.2.6 |
gitlab | gitlab | 13.5.0 ≤ 𝑥 < 14.2.6 |
gitlab | gitlab | 14.3.0 ≤ 𝑥 < 14.3.4 |
gitlab | gitlab | 14.3.0 ≤ 𝑥 < 14.3.4 |
gitlab | gitlab | 14.4.0 ≤ 𝑥 < 14.4.1 |
gitlab | gitlab | 14.4.0 ≤ 𝑥 < 14.4.1 |
𝑥
= Vulnerable software versions
References