851
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE Premium and Ultimate affecting versions 16.4.3, 16.5.3, and 16.6.1. In projects using subgroups to define who can push and/or merge to protected branches, th…
|
NVD-CWE-Other
|
CVE-2023-6564
|
2024-10-3 16:15 |
2024-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
852
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE affecting all versions from 13.3.0 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows an attacker to do a resource exhaustion using…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2024-1066
|
2024-10-3 16:15 |
2024-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
853
|
6.7 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected …
|
NVD-CWE-Other
|
CVE-2023-6840
|
2024-10-3 16:15 |
2024-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
854
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE affecting all versions starting from 11.3 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. It was…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2023-6736
|
2024-10-3 16:15 |
2024-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
855
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
An issue has been discovered in GitLab affecting all versions before 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. It was possible to read the user email address via tags feed although the …
|
NVD-CWE-noinfo
|
CVE-2023-5612
|
2024-10-3 16:15 |
2024-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
856
|
4.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An authorization vulnerability exists in GitLab versions 14.0 prior to 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. An unauthorized attacker is able to assign arbitrary users to MRs that t…
|
NVD-CWE-Other
|
CVE-2024-0456
|
2024-10-3 16:15 |
2024-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
857
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
A missing authorization check vulnerability exists in GitLab Remote Development affecting all versions prior to 16.5.6, 16.6 prior to 16.6.4 and 16.7 prior to 16.7.2. This condition allows an attacke…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2023-6955
|
2024-10-3 16:15 |
2024-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
858
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE affecting all versions starting from 15.3 before 16.5.6, all versions starting from 16.6 before 16.6.4, all versions starting from 16.7 before 16.7.2. The re…
|
NVD-CWE-noinfo
|
CVE-2023-4812
|
2024-10-3 16:15 |
2024-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
859
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions from 12.2 prior to 16.5.6, 16.6 prior to 16.6.4, and 16.7 prior to 16.7.2 in which an attacker could potentially modify the metadat…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2023-2030
|
2024-10-3 16:15 |
2024-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
860
|
7.5 |
HIGH
Network
wireshark
|
wireshark
|
DOCSIS dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file
|
CWE-674
Uncontrolled Recursion
|
CVE-2024-0211
|
2024-10-3 16:15 |
2024-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|