CVE-2021-22225

Publication date

2021-07-07 11:19:53

Family

GitLab

State

PUBLISHED

Description

Insufficient input sanitization in markdown in GitLab version 13.11 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown