Product
gitblit
4 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-50977
CVE-2025-50978
CVE-2022-31268
CVE-2022-31267
all versions
A template injection vulnerability leading to reflected cross-site scripting (XSS) has been identified in version 1.7.1, requiring
all versions
In Gitblit v1.7.1, a reflected cross-site scripting (XSS) vulnerability exists in the way repository path names are handled. By in
all versions
A Path Traversal vulnerability in Gitblit 1.9.3 can lead to reading website files via /resources//../ (e.g., followed by a WEB-INF
all versions
Gitblit 1.9.2 allows privilege escalation via the Config User Service: a control character can be placed in a profile data field,