ZeroHour

CVE-2019-15726

CVSS 3.1
5.3 medium
EPSS
2%p75
Published
()
Modified
Description

An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Embedded images and media files in markdown could be pointed to an arbitrary server, which would reveal the IP address of clients requesting the file from that server.

Vendors
gitlab
Products
gitlab
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.