Skip to content

Commit

Permalink
security/vuxml: fix NS tag on body of Gitlab vuln entry
Browse files Browse the repository at this point in the history
This fixes a vxquery warning (line number may vary):

| Parsing failed @ line 4442:
| Expected element in XHTML namespace.

Security:	6e0ebb4a-5e75-11ee-a365-001b217b3468
  • Loading branch information
mandree committed Feb 12, 2024
1 parent 6f75705 commit 424fb6c
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion security/vuxml/vuln/2023.xml
Expand Up @@ -2896,7 +2896,7 @@ Reported by Niccolo Belli and WIPocket (Github #400, #417).
</package>
</affects>
<description>
<body>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>Attacker can add other projects policy bot as member to their own project and use that bot to trigger pipelines in victims project</p>
<p>Group import allows impersonation of users in CI pipelines</p>
<p>Developers can bypass code owners approval by changing a MR's base branch</p>
Expand Down

0 comments on commit 424fb6c

Please sign in to comment.