Lucene search

K

Puppet-gerrit Security Vulnerabilities

cve
cve

CVE-2016-5737

The Gerrit configuration in the Openstack Puppet module for Gerrit (aka puppet-gerrit) improperly marks text/html as a safe mimetype, which might allow remote attackers to conduct cross-site scripting (XSS) attacks via a crafted review.

6.1CVSS

5.9AI Score

0.001EPSS

2017-01-12 11:59 PM
21
4