681
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE affecting all versions starting from 11.3 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. It was…
Update
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2023-6736
|
2024-10-3 16:15 |
2024-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
682
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
An issue has been discovered in GitLab affecting all versions before 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. It was possible to read the user email address via tags feed although the …
Update
|
NVD-CWE-noinfo
|
CVE-2023-5612
|
2024-10-3 16:15 |
2024-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
683
|
4.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An authorization vulnerability exists in GitLab versions 14.0 prior to 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. An unauthorized attacker is able to assign arbitrary users to MRs that t…
Update
|
NVD-CWE-Other
|
CVE-2024-0456
|
2024-10-3 16:15 |
2024-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
684
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
A missing authorization check vulnerability exists in GitLab Remote Development affecting all versions prior to 16.5.6, 16.6 prior to 16.6.4 and 16.7 prior to 16.7.2. This condition allows an attacke…
Update
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2023-6955
|
2024-10-3 16:15 |
2024-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
685
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE affecting all versions starting from 15.3 before 16.5.6, all versions starting from 16.6 before 16.6.4, all versions starting from 16.7 before 16.7.2. The re…
Update
|
NVD-CWE-noinfo
|
CVE-2023-4812
|
2024-10-3 16:15 |
2024-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
686
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions from 12.2 prior to 16.5.6, 16.6 prior to 16.6.4, and 16.7 prior to 16.7.2 in which an attacker could potentially modify the metadat…
Update
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2023-2030
|
2024-10-3 16:15 |
2024-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
687
|
7.5 |
HIGH
Network
wireshark
|
wireshark
|
DOCSIS dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file
Update
|
CWE-674
Uncontrolled Recursion
|
CVE-2024-0211
|
2024-10-3 16:15 |
2024-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
688
|
7.5 |
HIGH
Network
wireshark
|
wireshark
|
GVCP dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file
Update
|
CWE-674
Uncontrolled Recursion
|
CVE-2024-0208
|
2024-10-3 16:15 |
2024-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
689
|
8.8 |
HIGH
Network
|
gitlab
|
gitlab
|
A privilege escalation vulnerability in GitLab EE affecting all versions from 16.0 prior to 16.4.4, 16.5 prior to 16.5.4, and 16.6 prior to 16.6.2 allows a project Maintainer to use a Project Access …
Update
|
CWE-269
Improper Privilege Management
|
CVE-2023-3907
|
2024-10-3 16:15 |
2023-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
690
|
4.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab affecting all versions starting from 9.3 before 16.4.4, all versions starting from 16.5 before 16.5.4, all versions starting from 16.6 before 16.6.2. In certain…
Update
|
NVD-CWE-Other
|
CVE-2023-5061
|
2024-10-3 16:15 |
2023-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|