<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T13:07:46.875961+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-gitlab-2026-13113</id>
    <title>BIT-gitlab-2026-13113 — Time-of-check Time-of-use (TOCTOU) Race Condition in GitLab</title>
    <updated>2026-10-03T13:07:46.954109+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: gitlab</p>
<p>GitLab has remediated an issue in GitLab EE affecting all versions from 17.0 before 19.0.5, 19.1 before 19.1.3, and 19.2 before 19.2.1 that under certain conditions could have allowed an authenticated user to merge code into a protected branch without the required approvals due to a race condition in approval rule processing.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-gitlab-2026-13113"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0946</id>
    <title>certfr-2026-avi-0946 — De multiples vulnérabilités ont été découvertes dans GitLab. Certaines d'entre elles permettent à un attaquant de provo…</title>
    <updated>2026-10-03T13:07:46.954186+00:00</updated>
    <content>certfr-2026-avi-0946</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0946"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-356650</id>
    <title>EUVD-2026-356650</title>
    <updated>2026-10-03T13:07:46.954218+00:00</updated>
    <content>EUVD-2026-356650</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-356650"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-13113</id>
    <title>fkie_cve-2026-13113</title>
    <updated>2026-10-03T13:07:46.954238+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>GitLab has remediated an issue in GitLab EE affecting all versions from 17.0 before 19.0.5, 19.1 before 19.1.3, and 19.2 before 19.2.1 that under certain conditions could have allowed an authenticated user to merge code into a protected branch without the required approvals due to a race condition in approval rule processing.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-13113"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-629v-rwjx-m485</id>
    <title>GHSA-629v-rwjx-m485</title>
    <updated>2026-10-03T13:07:46.954275+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>GitLab has remediated an issue in GitLab EE affecting all versions from 17.0 before 19.0.5, 19.1 before 19.1.3, and 19.2 before 19.2.1 that under certain conditions could have allowed an authenticated user to merge code into a protected branch without the required approvals due to a race condition in approval rule processing.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-629v-rwjx-m485"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ncsc-2026-0270</id>
    <title>NCSC-2026-0270 — Kwetsbaarheden verholpen in GitLab door GitLab Inc.</title>
    <updated>2026-10-03T13:07:46.954303+00:00</updated>
    <content>NCSC-2026-0270</content>
    <link href="https://cve.radiocsirt.org/vuln/ncsc-2026-0270"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2586</id>
    <title>WID-SEC-W-2026-2586 — GitLab: Mehrere Schwachstellen</title>
    <updated>2026-10-03T13:07:46.954356+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um Sicherheitsmaßnahmen zu umgehen, Cross-Site-Scripting-Angriffe durchzuführen, Daten zu manipulieren, vertrauliche Informationen offenzulegen oder einen Denial-of-Service-Zustand auszulösen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2586"/>
  </entry>
</feed>
