<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-10T21:01:18.537321+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-gitlab-2021-39895</id>
    <title>BIT-gitlab-2021-39895</title>
    <updated>2026-10-10T21:01:18.643399+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: gitlab</p>
<p>In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-gitlab-2021-39895"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-830</id>
    <title>certfr-2021-avi-830 — De multiples vulnérabilités ont été découvertes dans GitLab. Certaines
d'entre elles permettent à un attaquant de provo…</title>
    <updated>2026-10-10T21:01:18.643454+00:00</updated>
    <content>certfr-2021-avi-830</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-830"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-91177</id>
    <title>cnvd-2021-91177</title>
    <updated>2026-10-10T21:01:18.643477+00:00</updated>
    <content>cnvd-2021-91177</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-91177"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-30935</id>
    <title>EUVD-2026-30935</title>
    <updated>2026-10-10T21:01:18.643490+00:00</updated>
    <content>EUVD-2026-30935</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-30935"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-39895</id>
    <title>fkie_cve-2021-39895</title>
    <updated>2026-10-10T21:01:18.643501+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-39895"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-c3rv-jv45-94rx</id>
    <title>GHSA-c3rv-jv45-94rx</title>
    <updated>2026-10-10T21:01:18.643524+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-c3rv-jv45-94rx"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-39895</id>
    <title>gsd-2021-39895</title>
    <updated>2026-10-10T21:01:18.643540+00:00</updated>
    <content>gsd-2021-39895</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-39895"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-39895</id>
    <title>UBUNTU-CVE-2021-39895</title>
    <updated>2026-10-10T21:01:18.643550+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: gitlab</p>
<p>In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-39895"/>
  </entry>
</feed>
