Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-3902: 2022/CVE-2022-3902.json · master · GitLab.org / cves · GitLab

An issue has been discovered in GitLab affecting all versions starting from 9.3 before 15.4.6, all versions starting from 15.5 before 15.5.5, all versions starting from 15.6 before 15.6.1. It was possible for a project maintainer to unmask webhook secret tokens by reviewing the logs after testing webhooks.

CVE
#web#js#git#auth

Skip to content

GitLab

Next

    • GitLab: the DevOps platform
    • Explore GitLab
    • Install GitLab
    • How GitLab compares
    • Get started
    • GitLab docs
    • GitLab Learn
  • Pricing

  • Talk to an expert

  • /

  • Help

    • Help

    • Support

    • Community forum

    • Submit feedback

    • Contribute to GitLab

    Projects Groups Snippets

  • Sign up now

  • Login

  • Sign in / Register

  • GitLab.org
  • cves
  • Repository

Switch branch/tag

  • cves
  • 2022
  • CVE-2022-3902.json

Find file BlameHistoryPermalink

  • Publishing 0 updated advisories and 2 new advisories · 6cf4af7e

    🤖 GitLab Bot 🤖 authored Jan 20, 2023

    6cf4af7e

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907