First published: Wed Jul 10 2019(Updated: )
GitLab EE version 11.5 is vulnerable to a persistent XSS vulnerability in the Operations page. This is fixed in 11.5.1.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GitLab | >=11.5.0<11.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-19579 is classified with a high severity due to its potential for persistent XSS attacks.
To remediate CVE-2018-19579, upgrade GitLab EE to version 11.5.1 or later.
GitLab EE version 11.5.0 is affected by CVE-2018-19579.
CVE-2018-19579 is a persistent cross-site scripting (XSS) vulnerability.
The vulnerability in CVE-2018-19579 is located on the Operations page of GitLab EE.