<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T18:39:46.933867+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-gitlab-2024-4201</id>
    <title>BIT-gitlab-2024-4201 — Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab</title>
    <updated>2026-10-03T18:39:46.938101+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: gitlab</p>
<p>A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 16.10.7, all versions starting from 16.11 before 16.111.4, all versions starting from 17.0 before 17.0.2. When viewing an XML file in a repository in raw mode, it can be made to render as HTML if viewed under specific circumstances.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-gitlab-2024-4201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0490</id>
    <title>certfr-2024-avi-0490 — De multiples vulnérabilités ont été découvertes dans GitLab. Elles permettent à un attaquant de provoquer un déni de se…</title>
    <updated>2026-10-03T18:39:46.938150+00:00</updated>
    <content>certfr-2024-avi-0490</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0490"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-160598</id>
    <title>EUVD-2026-160598</title>
    <updated>2026-10-03T18:39:46.938169+00:00</updated>
    <content>EUVD-2026-160598</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-160598"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-4201</id>
    <title>fkie_cve-2024-4201</title>
    <updated>2026-10-03T18:39:46.938182+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 16.10.7, all versions starting from 16.11 before 16.111.4, all versions starting from 17.0 before 17.0.2. When viewing an XML file in a repository in raw mode, it can be made to render as HTML if viewed under specific circumstances.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-4201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-wq8m-964x-6vr4</id>
    <title>GHSA-wq8m-964x-6vr4</title>
    <updated>2026-10-03T18:39:46.938204+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 16.10.7, all versions starting from 16.11 before 16.111.4, all versions starting from 17.0 before 17.0.2. When viewing an XML file in a repository in raw mode, it can be made to render as HTML if viewed under specific circumstances.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-wq8m-964x-6vr4"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2024-4201</id>
    <title>gsd-2024-4201</title>
    <updated>2026-10-03T18:39:46.938220+00:00</updated>
    <content>gsd-2024-4201</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2024-4201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-4201</id>
    <title>UBUNTU-CVE-2024-4201</title>
    <updated>2026-10-03T18:39:46.938230+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: gitlab</p>
<p>A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 16.10.7, all versions starting from 16.11 before 16.111.4, all versions starting from 17.0 before 17.0.2. When viewing an XML file in a repository in raw mode, it can be made to render as HTML if viewed under specific circumstances.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-4201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1367</id>
    <title>WID-SEC-W-2024-1367 — GitLab: Mehrere Schwachstellen ermöglichen Denial of Service und Cross-Site Scripting</title>
    <updated>2026-10-03T18:39:46.938249+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um einen Denial of Service Angriff durchzuführen und einen Cross-Site-Scripting-Angriff zu starten.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1367"/>
  </entry>
</feed>
