<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T23:38:43.267150+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-gitlab-2023-3915</id>
    <title>BIT-gitlab-2023-3915 — Incorrect Execution-Assigned Permissions in GitLab</title>
    <updated>2026-10-03T23:38:43.301530+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: gitlab</p>
<p>An issue has been discovered in GitLab EE affecting all versions starting from 16.1 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. If an external user is given an owner role on any group, that external user may escalate their privileges on the instance by creating a service account in that group. This service account is not classified as external and may be used to access internal projects.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-gitlab-2023-3915"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0707</id>
    <title>certfr-2023-avi-0707 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;GitLab&lt;/span&gt;. Certaines d'entre elles permet…</title>
    <updated>2026-10-03T23:38:43.301598+00:00</updated>
    <content>certfr-2023-avi-0707</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0707"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-317881</id>
    <title>EUVD-2026-317881</title>
    <updated>2026-10-03T23:38:43.301621+00:00</updated>
    <content>EUVD-2026-317881</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-317881"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-3915</id>
    <title>fkie_cve-2023-3915</title>
    <updated>2026-10-03T23:38:43.301634+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue has been discovered in GitLab EE affecting all versions starting from 16.1 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. If an external user is given an owner role on any group, that external user may escalate their privileges on the instance by creating a service account in that group. This service account is not classified as external and may be used to access internal projects.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-3915"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3m8p-28cp-6cg5</id>
    <title>GHSA-3m8p-28cp-6cg5</title>
    <updated>2026-10-03T23:38:43.301658+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue has been discovered in GitLab EE affecting all versions starting from 16.1 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. If an external user is given an owner role on any group, that external user may escalate their privileges on the instance by creating a service account in that group. This service account is not classified as external and may be used to access internal projects.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3m8p-28cp-6cg5"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-3915</id>
    <title>gsd-2023-3915</title>
    <updated>2026-10-03T23:38:43.301674+00:00</updated>
    <content>gsd-2023-3915</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-3915"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2244</id>
    <title>WID-SEC-W-2023-2244 — GitLab: Mehrere Schwachstellen</title>
    <updated>2026-10-03T23:38:43.301684+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentifizierter Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um8 Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand zu verursachen, vertrauliche Informationen offenzulegen und seine Privilegien zu erweitern.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2244"/>
  </entry>
</feed>
