VDB

GSD-2023-2200

GSD-2023-2200 PUBLISHED CVSS 4.099999904632568 MEDIUM

An issue has been discovered in GitLab CE/EE affecting all versions starting from 7.14 before 15.11.10, all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1, which allows an attacker to inject HTML in an email address field.

Risk Scores

CVSS v3.1
4.099999904632568
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:L/A:N

Affected Products

VendorProductVersions
GitLabGitLab7.14, 16.0, 16.1

Timeline

  • Apr 21, 2026 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›