• caglararli@hotmail.com
  • 05386281520

CVE-2024-2279 | GitLab Community Edition/Enterprise Edition up to 16.8.5/16.9.3/16.10.1 Autocomplete cross site scripting (Issue 448469)

Çağlar Arlı      -    22 Views

CVE-2024-2279 | GitLab Community Edition/Enterprise Edition up to 16.8.5/16.9.3/16.10.1 Autocomplete cross site scripting (Issue 448469)

A vulnerability was found in GitLab Community Edition and Enterprise Edition up to 16.8.5/16.9.3/16.10.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Autocomplete Handler. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2024-2279. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.