CVE-2017-8778

Publication date

2017-05-04 15:00:00

Family

mitre

State

PUBLISHED

Description

GitLab before 8.14.9, 8.15.x before 8.15.6, and 8.16.x before 8.16.5 has XSS via a SCRIPT element in an issue attachment or avatar that is an SVG document.