<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 23:36:56 +0000</lastBuildDate>
    <item>
      <title>BIT-gitlab-2022-3067</title>
      <link>https://cve.radiocsirt.org/vuln/bit-gitlab-2022-3067</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects&amp;#39; content given the project&amp;#39;s ID.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects&amp;#39; content given the project&amp;#39;s ID.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-gitlab-2022-3067</guid>
    </item>
    <item>
      <title>certfr-2022-avi-873 — De multiples vulnérabilités ont été découvertes dans les produits
GitLab. Certaines d'entre elles permettent à un attaq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-873</link>
      <description>certfr-2022-avi-873</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-873</guid>
    </item>
    <item>
      <title>EUVD-2026-239105</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-239105</link>
      <description>EUVD-2026-239105</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-239105</guid>
    </item>
    <item>
      <title>fkie_cve-2022-3067</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-3067</link>
      <description>&lt;p&gt;An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects&amp;#39; content given the project&amp;#39;s ID.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects&amp;#39; content given the project&amp;#39;s ID.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-3067</guid>
    </item>
    <item>
      <title>GHSA-mqfg-2r7h-3f8c</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mqfg-2r7h-3f8c</link>
      <description>&lt;p&gt;An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects&amp;#39; content given the project&amp;#39;s ID.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects&amp;#39; content given the project&amp;#39;s ID.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mqfg-2r7h-3f8c</guid>
    </item>
    <item>
      <title>gsd-2022-3067</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-3067</link>
      <description>gsd-2022-3067</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-3067</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-3067</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-3067</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects&amp;#39; content given the project&amp;#39;s ID.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects&amp;#39; content given the project&amp;#39;s ID.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-3067</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-1582 — GitLab: Mehrere Schwachstellen ermöglichen Cross-Site Scripting</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1582</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1582</guid>
    </item>
  </channel>
</rss>
