Description
Improper neutralization of input in Jira integration configuration in GitLab CE/EE, affecting all versions from 15.10 prior to 16.6.1, 16.5 prior to 16.5.3, and 16.4 prior to 16.4.3 allows attacker to execute javascript in victim's browser.
No analysis available yet.
Remediation
Vendor Solution
Upgrade to versions 16.6.1, 16.5.3, 16.4.3 or above.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58291 | Improper neutralization of input in Jira integration configuration in GitLab CE/EE, affecting all versions from 15.10 prior to 16.6.1, 16.5 prior to 16.5.3, and 16.4 prior to 16.4.3 allows attacker to execute javascript in victim's browser. |
References
History
Mon, 02 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 29 Aug 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2025-11-20T04:11:08.273Z
Reserved: 2023-11-08T13:01:15.229Z
Link: CVE-2023-6033
Updated: 2024-08-02T08:21:17.132Z
Status : Modified
Published: 2023-12-01T07:15:13.633
Modified: 2024-11-21T08:43:00.893
Link: CVE-2023-6033
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD