Security Advisory

CVE-2019-5471

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-09-09 17:47:02
Last updated 2024-08-04 19:54:53
Assigner hackerone
State PUBLISHED

Description

An input validation and output encoding issue was discovered in the GitLab email notification feature which could result in a persistent XSS. This was addressed in GitLab 12.1.2, 12.0.4, and 11.11.6.