<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 18:57:17 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-16470</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-16470</link>
      <description>bdu:2025-16470</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-16470</guid>
    </item>
    <item>
      <title>BIT-gitlab-2025-12653 — Authentication Bypass by Spoofing in GitLab</title>
      <link>https://cve.radiocsirt.org/vuln/bit-gitlab-2025-12653</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by changing headers on some requests.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by changing headers on some requests.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-gitlab-2025-12653</guid>
    </item>
    <item>
      <title>certfr-2025-avi-1042 — De multiples vulnérabilités ont été découvertes dans GitLab. Elles permettent à un attaquant de provoquer un déni de se…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-1042</link>
      <description>certfr-2025-avi-1042</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-1042</guid>
    </item>
    <item>
      <title>EUVD-2026-263174</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-263174</link>
      <description>EUVD-2026-263174</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-263174</guid>
    </item>
    <item>
      <title>fkie_cve-2025-12653</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-12653</link>
      <description>&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by changing headers on some requests.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by changing headers on some requests.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-12653</guid>
    </item>
    <item>
      <title>GHSA-2v4g-65gf-w58f</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2v4g-65gf-w58f</link>
      <description>&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by changing headers on some requests.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by changing headers on some requests.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2v4g-65gf-w58f</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2684 — GitLab: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2684</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um Benutzerrechte zu erlangen, einen Denial of Service herbeizuführen, Informationen offenzulegen oder Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um Benutzerrechte zu erlangen, einen Denial of Service herbeizuführen, Informationen offenzulegen oder Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2684</guid>
    </item>
  </channel>
</rss>
