<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 06:06:20 +0000</lastBuildDate>
    <item>
      <title>BIT-gitlab-2023-3399 — Insertion of Sensitive Information Into Sent Data in GitLab</title>
      <link>https://cve.radiocsirt.org/vuln/bit-gitlab-2023-3399</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-gitlab-2023-3399</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0905 — De multiples vulnérabilités ont été découvertes dans GitLab. Elles
permettent à un attaquant de provoquer un déni de se…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0905</link>
      <description>certfr-2023-avi-0905</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0905</guid>
    </item>
    <item>
      <title>EUVD-2026-261377</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-261377</link>
      <description>EUVD-2026-261377</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-261377</guid>
    </item>
    <item>
      <title>fkie_cve-2023-3399</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-3399</link>
      <description>&lt;p&gt;An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-3399</guid>
    </item>
    <item>
      <title>GHSA-wrm3-h327-j8wh</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wrm3-h327-j8wh</link>
      <description>&lt;p&gt;An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wrm3-h327-j8wh</guid>
    </item>
    <item>
      <title>gsd-2023-3399</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-3399</link>
      <description>gsd-2023-3399</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-3399</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-3399</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-3399</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab, Ubuntu:24.04:LTS: gitlab-agent, Ubuntu:25.10: gitlab-agent, Ubuntu:26.04:LTS: gitlab-agent&lt;/p&gt;
&lt;p&gt;An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab, Ubuntu:24.04:LTS: gitlab-agent, Ubuntu:25.10: gitlab-agent, Ubuntu:26.04:LTS: gitlab-agent&lt;/p&gt;
&lt;p&gt;An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-3399</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2788 — GitLab: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2788</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um einen Denial of Service Angriff durchzuführen und Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um einen Denial of Service Angriff durchzuführen und Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2788</guid>
    </item>
  </channel>
</rss>
