/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2018-17537

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2018-17537

Severity

5.4

Medium

CVSS V3

Description

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. blog-viewer has stored XSS during repository browsing, if package.json exists. .

References

  • https://images.chainguard.dev/security/CGA-rpvp-3279-r35v

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing