MEDIUM
CVE-2019-5467
CVSS
5.4
Description
An input validation and output encoding issue was discovered in the GitLab CE/EE wiki pages feature which could result in a persistent XSS. This vulnerability was addressed in 12.1.2, 12.0.4, and 11.11.6.
Weakness (CWE)
CWE-79
Cross-site Scripting (XSS)
EPSS Score
0.74%
Probability of exploitation in next 30 days
53.1th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.