CVE-2018-18843 log
| Source |
|
| Severity | High |
| Remote | Yes |
| Type | Cross-site request forgery |
| Description | The GitLab Kubernetes integration was vulnerable to a SSRF issue which could allow an attacker to make requests to access any internal URLs |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-802 | gitlab | 11.4.0-1 | 11.4.3-2 | High | Not affected |
| References |
|---|
https://about.gitlab.com/2018/11/01/critical-security-release-gitlab-11-dot-4-dot-4-released/ |