Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-0155: 2023/CVE-2023-0155.json · master · GitLab.org / cves · GitLab

An issue has been discovered in GitLab CE/EE affecting all versions before 15.8.5, 15.9.4, 15.10.1. Open redirects was possible due to framing arbitrary content on any page allowing user controlled markdown

CVE
#js#git#auth

Skip to content

GitLab

Next

    • GitLab: the DevOps platform
    • Explore GitLab
    • Install GitLab
    • How GitLab compares
    • Get started
    • GitLab docs
    • GitLab Learn
  • Pricing

  • Talk to an expert

  • /

  • Help

    • Help

    • Support

    • Community forum

    • Submit feedback

    • Contribute to GitLab

    Projects Groups Topics Snippets

  • Register

  • Sign in

The 16.0 major release is coming on May 22, 2023! This version brings many exciting improvements to GitLab, but also removes some deprecated features. These changes are going live on GitLab.com now, continuing up to May 22, 2023, when GitLab 16.0 is released. Visit the deprecations page to see what is scheduled for removal.

  • GitLab.org

  • cves

  • Repository

  • cves

  • 2023

  • CVE-2023-0155.json

Find file BlameHistoryPermalink

  • Publishing 0 updated advisories and 2 new advisories · acdee4fd

    🤖 GitLab Bot 🤖 authored May 03, 2023

    acdee4fd

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda