HIGH

CVE-2018-19571

Gitlab GitLab 2019-07-10 CVSS v3.1
CVSS
7.7

Description

GitLab CE/EE, versions 8.18 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an SSRF vulnerability in webhooks.

Weakness (CWE)

CWE-918 Server-Side Request Forgery (SSRF)

EPSS Score

28.19%
Probability of exploitation in next 30 days
98th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE