<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 22:23:06 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-10983</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-10983</link>
      <description>bdu:2024-10983</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-10983</guid>
    </item>
    <item>
      <title>BIT-gitlab-2024-11669 — Incorrect Authorization in GitLab</title>
      <link>https://cve.radiocsirt.org/vuln/bit-gitlab-2024-11669</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;An issue was discovered in GitLab CE/EE affecting all versions from 16.9.8 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. Certain API endpoints could potentially allow unauthorized access to sensitive data due to overly broad application of token scopes.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;An issue was discovered in GitLab CE/EE affecting all versions from 16.9.8 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. Certain API endpoints could potentially allow unauthorized access to sensitive data due to overly broad application of token scopes.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-gitlab-2024-11669</guid>
    </item>
    <item>
      <title>certfr-2024-avi-1021 — De multiples vulnérabilités ont été découvertes dans GitLab. Elles permettent à un attaquant de provoquer une élévation…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-1021</link>
      <description>certfr-2024-avi-1021</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-1021</guid>
    </item>
    <item>
      <title>EUVD-2026-205240</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-205240</link>
      <description>EUVD-2026-205240</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-205240</guid>
    </item>
    <item>
      <title>fkie_cve-2024-11669</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-11669</link>
      <description>&lt;p&gt;An issue was discovered in GitLab CE/EE affecting all versions from 16.9.8 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. Certain API endpoints could potentially allow unauthorized access to sensitive data due to overly broad application of token scopes.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in GitLab CE/EE affecting all versions from 16.9.8 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. Certain API endpoints could potentially allow unauthorized access to sensitive data due to overly broad application of token scopes.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-11669</guid>
    </item>
    <item>
      <title>GHSA-v84c-53c6-xmmp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-v84c-53c6-xmmp</link>
      <description>&lt;p&gt;An issue was discovered in GitLab CE/EE affecting all versions from 16.9.8 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. Certain API endpoints could potentially allow unauthorized access to sensitive data due to overly broad application of token scopes.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in GitLab CE/EE affecting all versions from 16.9.8 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. Certain API endpoints could potentially allow unauthorized access to sensitive data due to overly broad application of token scopes.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-v84c-53c6-xmmp</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-11669</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-11669</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab&lt;/p&gt;
&lt;p&gt;An issue was discovered in GitLab CE/EE affecting all versions from 16.9.8 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. Certain API endpoints could potentially allow unauthorized access to sensitive data due to overly broad application of token scopes.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab&lt;/p&gt;
&lt;p&gt;An issue was discovered in GitLab CE/EE affecting all versions from 16.9.8 before 17.4.5, 17.5 before 17.5.3, and 17.6 before 17.6.1. Certain API endpoints could potentially allow unauthorized access to sensitive data due to overly broad application of token scopes.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-11669</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-3552 — GitLab: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3552</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um Sicherheitsvorkehrungen zu umgehen, erhöhte Berechtigungen zu erlangen, einen Denial-of-Service-Zustand herbeizuführen und vertrauliche Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um Sicherheitsvorkehrungen zu umgehen, erhöhte Berechtigungen zu erlangen, einen Denial-of-Service-Zustand herbeizuführen und vertrauliche Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3552</guid>
    </item>
  </channel>
</rss>
