<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T08:40:18.224758+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-11288</id>
    <title>bdu:2024-11288</title>
    <updated>2026-10-03T08:40:18.310347+00:00</updated>
    <content>bdu:2024-11288</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-11288"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-gitlab-2024-11274</id>
    <title>BIT-gitlab-2024-11274 — URL Redirection to Untrusted Site ('Open Redirect') in GitLab</title>
    <updated>2026-10-03T08:40:18.310386+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: gitlab</p>
<p>An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 17.4.6, starting from 17.5 prior to 17.5.4, and starting from 17.6 prior to 17.6.2, injection of NEL headers in k8s proxy response could lead to session data exfiltration.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-gitlab-2024-11274"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-1065</id>
    <title>certfr-2024-avi-1065 — De multiples vulnérabilités ont été découvertes dans les produits GitLab. Certaines d'entre elles permettent à un attaq…</title>
    <updated>2026-10-03T08:40:18.310421+00:00</updated>
    <content>certfr-2024-avi-1065</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-1065"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-206981</id>
    <title>EUVD-2026-206981</title>
    <updated>2026-10-03T08:40:18.310439+00:00</updated>
    <content>EUVD-2026-206981</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-206981"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-11274</id>
    <title>fkie_cve-2024-11274</title>
    <updated>2026-10-03T08:40:18.310459+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 17.4.6, starting from 17.5 prior to 17.5.4, and starting from 17.6 prior to 17.6.2, injection of NEL headers in k8s proxy response could lead to session data exfiltration.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-11274"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fr8h-r296-xggf</id>
    <title>GHSA-fr8h-r296-xggf</title>
    <updated>2026-10-03T08:40:18.310494+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 17.4.6, starting from 17.5 prior to 17.5.4, and starting from 17.6 prior to 17.6.2, injection of NEL headers in k8s proxy response could lead to session data exfiltration.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fr8h-r296-xggf"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-11274</id>
    <title>UBUNTU-CVE-2024-11274</title>
    <updated>2026-10-03T08:40:18.310510+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: gitlab</p>
<p>An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 17.4.6, starting from 17.5 prior to 17.5.4, and starting from 17.6 prior to 17.6.2, injection of NEL headers in k8s proxy response could lead to session data exfiltration.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-11274"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3683</id>
    <title>WID-SEC-W-2024-3683 — GitLab: Mehrere Schwachstellen</title>
    <updated>2026-10-03T08:40:18.310528+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um Informationen offenzulegen, einen Denial of Service zu verursachen, einen Cross-Site Scripting Angriff durchzuführen oder Sicherheitsvorkehrungen zu umgehen und potentiell andere Accounts zu übernehmen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3683"/>
  </entry>
</feed>
