<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 20:46:22 +0000</lastBuildDate>
    <item>
      <title>BIT-gitlab-2023-4018 — Direct Request ('Forced Browsing') in GitLab</title>
      <link>https://cve.radiocsirt.org/vuln/bit-gitlab-2023-4018</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-gitlab-2023-4018</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0707 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;GitLab&lt;/span&gt;. Certaines d'entre elles permet…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0707</link>
      <description>certfr-2023-avi-0707</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0707</guid>
    </item>
    <item>
      <title>EUVD-2026-352390</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-352390</link>
      <description>EUVD-2026-352390</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-352390</guid>
    </item>
    <item>
      <title>fkie_cve-2023-4018</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-4018</link>
      <description>&lt;p&gt;An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-4018</guid>
    </item>
    <item>
      <title>GHSA-h98w-jf8x-jw68</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h98w-jf8x-jw68</link>
      <description>&lt;p&gt;An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h98w-jf8x-jw68</guid>
    </item>
    <item>
      <title>gsd-2023-4018</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-4018</link>
      <description>gsd-2023-4018</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-4018</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-4018</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-4018</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab&lt;/p&gt;
&lt;p&gt;An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-4018</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2244 — GitLab: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2244</link>
      <description>&lt;p&gt;Ein entfernter, authentifizierter Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um8 Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand zu verursachen, vertrauliche Informationen offenzulegen und seine Privilegien zu erweitern.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentifizierter Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um8 Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand zu verursachen, vertrauliche Informationen offenzulegen und seine Privilegien zu erweitern.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2244</guid>
    </item>
  </channel>
</rss>
