📦

puppet-gerrit

Vendor: openstack

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 17 Total Indexed
Avg. EPSS 1.44% Exploit Prob.
Latest CVE CVE-2016-5737 Jan 12

Security Vulnerability Index

Page 1 / 2
6.1 CVSS

The Gerrit configuration in the Openstack Puppet module for Gerrit (aka puppet-gerrit) improperly marks text/html as a safe mimetype, which might allow remote attackers to conduct cross-site scripting (XSS) attacks via a crafted review.

EPSS: 1.44%