VDB
CVE-2026-2995
CVE-2026-2995
PUBLISHED
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in GitLab
EPSS 0.09% · 24.8th percentile
Risk Scores
EPSS Score
0.09%
24.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 15.4.0, 18.9.0, 18.10.0 |
Timeline
- Mar 25, 2026 CVE Published
- Mar 25, 2026 Coalition ESS Score
- Mar 25, 2026 PoC Published
- Mar 25, 2026 PoC Published
- Mar 25, 2026 PoC Published
- Mar 25, 2026 PoC Published
- Mar 25, 2026 PoC Published
- Mar 25, 2026 PoC Published
- Mar 26, 2026 PoC Published
- Mar 26, 2026 PoC Published
- Mar 26, 2026 CVE Updated
- Mar 27, 2026 PoC Published