Description
Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-9388 | Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown |
References
History
No history.
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2024-08-03T18:37:18.232Z
Reserved: 2021-01-05T00:00:00.000Z
Link: CVE-2021-22242
No data.
Status : Modified
Published: 2021-08-25T19:15:10.750
Modified: 2024-11-21T05:49:46.780
Link: CVE-2021-22242
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD