← All credits
Thanks [st4nly0n](https://hackerone.com/st4nly0n) for reporting this vulnerability through our HackerOne bug bounty program
14 vulnerability records and advisories credit this contributor.
CVE-2026-1606
Improper Control of Generation of Code ('Code Injection') in GitLab
CVE-2026-1230
Use of Incorrectly-Resolved Name or Reference in GitLab
CVE-2025-5101
Improper Control of Generation of Code ('Code Injection') in GitLab
CVE-2024-6502
Incorrect Provision of Specified Functionality in GitLab
CVE-2024-6329
Improper Encoding or Escaping of Output in GitLab
CVE-2024-3958
Improper Control of Generation of Code ('Code Injection') in GitLab
CVE-2023-6051
Improper Control of Generation of Code ('Code Injection') in GitLab
CVE-2023-5512
Improper Control of Generation of Code ('Code Injection') in GitLab
CVE-2023-3401
Improper Control of Generation of Code ('Code Injection') in GitLab
CVE-2023-1708
An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9 prior to 15.9.4, and 15.10 prior to 15.10.1 where non-printable characters gets copied from clipboard, allowing unexpected commands to be executed on victim mach