FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2026-03-03 16:31:49 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
11b71871-20ba-11f0-9471-2cf05da270f3Gitlab -- Vulnerabilities

Gitlab reports:

Cross Site Scripting (XSS) in Maven Dependency Proxy through CSP directives

Cross Site Scripting (XSS) in Maven dependency proxy through cache headers

Network Error Logging (NEL) Header Injection in Maven Dependency Proxy Allows Browser Activity Monitoring

Denial of service (DOS) via issue preview

Unauthorized access to branch names when Repository assets are disabled in the project


Discovery 2025-04-23
Entry 2025-04-24
gitlab-ce
gitlab-ee
>= 17.11.0 lt 17.11.1

>= 17.10.0 lt 17.10.5

>= 16.6.0 lt 17.9.7

CVE-2025-1763
CVE-2025-2443
CVE-2025-1908
CVE-2025-0639
CVE-2024-12244
https://about.gitlab.com/releases/2025/04/23/patch-release-gitlab-17-11-1-released/