A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. When viewing an XML file in a repository in "raw" mode, it can be made to render as HTML if viewed under specific circumstances
                
            Metrics
Affected Vendors & Products
References
        History
                    Wed, 29 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: GitLab
Published: 2023-05-03T00:00:00.000Z
Updated: 2025-01-29T21:46:34.969Z
Reserved: 2023-04-04T00:00:00.000Z
Link: CVE-2023-1836
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T06:05:26.777Z
 NVD
                        NVD
                    Status : Modified
Published: 2023-05-03T21:15:17.807
Modified: 2024-11-21T07:39:59.567
Link: CVE-2023-1836
 Redhat
                        Redhat
                    No data.