281
|
3.5 |
LOW
Network
|
gitlab
|
gitlab
|
An input validation issue in the asset proxy in GitLab EE, affecting all versions from 12.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1, allowed an authenticated attacker to craft…
Update
|
NVD-CWE-Other
|
CVE-2023-3906
|
2024-10-9 04:15 |
2023-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
282
|
8.8 |
HIGH
Network
|
gitlab
|
gitlab
|
A privilege escalation vulnerability in GitLab EE affecting all versions from 16.0 prior to 16.4.4, 16.5 prior to 16.5.4, and 16.6 prior to 16.6.2 allows a project Maintainer to use a Project Access …
Update
|
NVD-CWE-Other
|
CVE-2023-3907
|
2024-10-9 04:12 |
2023-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
283
|
6.3 |
MEDIUM
Network
|
icegram
|
email_subscribers_\&_newsletters
|
The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up …
Update
|
CWE-94
Code Injection
|
CVE-2024-8254
|
2024-10-9 04:08 |
2024-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
284
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.3 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. A R…
Update
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2023-3909
|
2024-10-9 04:08 |
2023-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
285
|
7.1 |
HIGH
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab affecting all versions starting from 8.15 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. It was po…
Update
|
CWE-601
Open Redirect
|
CVE-2023-3922
|
2024-10-9 04:07 |
2023-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
286
|
4.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab affecting all versions starting from 11.2 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. It was po…
Update
|
CWE-863
Incorrect Authorization
|
CVE-2023-3920
|
2024-10-9 04:07 |
2023-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
287
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. A l…
Update
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2023-5825
|
2024-10-9 04:01 |
2023-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
288
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab EE affecting all versions starting from 11.3 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1. It was…
Update
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2023-6736
|
2024-10-9 04:00 |
2024-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
289
|
6.1 |
MEDIUM
Network
|
yoginetwork
|
rabbitloader
|
The RabbitLoader – Website Speed Optimization for improving Core Web Vital metrics with Cache, Image Optimization, and more plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to…
Update
|
CWE-79
Cross-site Scripting
|
CVE-2024-8800
|
2024-10-9 03:59 |
2024-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
290
|
5.3 |
MEDIUM
Network
gitlab
|
gitlab
|
A missing authorization check vulnerability exists in GitLab Remote Development affecting all versions prior to 16.5.6, 16.6 prior to 16.6.4 and 16.7 prior to 16.7.2. This condition allows an attacke…
Update
|
CWE-862
Missing Authorization
|
CVE-2023-6955
|
2024-10-9 03:59 |
2024-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|