<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T08:03:42.471425+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-00478</id>
    <title>bdu:2025-00478</title>
    <updated>2026-10-03T08:03:42.565224+00:00</updated>
    <content>bdu:2025-00478</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-00478"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-gitlab-2024-8647</id>
    <title>BIT-gitlab-2024-8647 — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in GitLab</title>
    <updated>2026-10-03T08:03:42.565265+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: gitlab</p>
<p>An issue was discovered in GitLab affecting all versions starting 15.2 to 17.4.6, 17.5 prior to 17.5.4, and 17.6 prior to 17.6.2. On self hosted installs, it was possible to leak the anti-CSRF-token to an external site while the Harbor integration was enabled.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-gitlab-2024-8647"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-1065</id>
    <title>certfr-2024-avi-1065 — De multiples vulnérabilités ont été découvertes dans les produits GitLab. Certaines d'entre elles permettent à un attaq…</title>
    <updated>2026-10-03T08:03:42.565301+00:00</updated>
    <content>certfr-2024-avi-1065</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-1065"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-206978</id>
    <title>EUVD-2026-206978</title>
    <updated>2026-10-03T08:03:42.565319+00:00</updated>
    <content>EUVD-2026-206978</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-206978"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-8647</id>
    <title>fkie_cve-2024-8647</title>
    <updated>2026-10-03T08:03:42.565330+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in GitLab affecting all versions starting 15.2 to 17.4.6, 17.5 prior to 17.5.4, and 17.6 prior to 17.6.2. On self hosted installs, it was possible to leak the anti-CSRF-token to an external site while the Harbor integration was enabled.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-8647"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4xpw-245v-vp2w</id>
    <title>GHSA-4xpw-245v-vp2w</title>
    <updated>2026-10-03T08:03:42.565353+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in GitLab affecting all versions starting 15.2 to 17.4.6, 17.5 prior to 17.5.4, and 17.6 prior to 17.6.2. On self hosted installs, it was possible to leak the anti-CSRF-token to an external site while the Harbor integration was enabled.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4xpw-245v-vp2w"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-8647</id>
    <title>UBUNTU-CVE-2024-8647</title>
    <updated>2026-10-03T08:03:42.565367+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: gitlab</p>
<p>An issue was discovered in GitLab affecting all versions starting 15.2 to 17.4.6, 17.5 prior to 17.5.4, and 17.6 prior to 17.6.2. On self hosted installs, it was possible to leak the anti-CSRF-token to an external site while the Harbor integration was enabled.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-8647"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3683</id>
    <title>WID-SEC-W-2024-3683 — GitLab: Mehrere Schwachstellen</title>
    <updated>2026-10-03T08:03:42.565386+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um Informationen offenzulegen, einen Denial of Service zu verursachen, einen Cross-Site Scripting Angriff durchzuführen oder Sicherheitsvorkehrungen zu umgehen und potentiell andere Accounts zu übernehmen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3683"/>
  </entry>
</feed>
