<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 16:31:29 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-09565</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-09565</link>
      <description>bdu:2026-09565</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-09565</guid>
    </item>
    <item>
      <title>BIT-gitlab-2026-13320 — Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab</title>
      <link>https://cve.radiocsirt.org/vuln/bit-gitlab-2026-13320</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to execute arbitrary scripts in another user&amp;#39;s browser session due to improper sanitization of user-supplied input.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gitlab&lt;/p&gt;
&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to execute arbitrary scripts in another user&amp;#39;s browser session due to improper sanitization of user-supplied input.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-gitlab-2026-13320</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0850 — De multiples vulnérabilités ont été découvertes dans GitLab. Certaines d'entre elles permettent à un attaquant de provo…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0850</link>
      <description>certfr-2026-avi-0850</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0850</guid>
    </item>
    <item>
      <title>EUVD-2026-335268</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-335268</link>
      <description>EUVD-2026-335268</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-335268</guid>
    </item>
    <item>
      <title>fkie_cve-2026-13320</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-13320</link>
      <description>&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to execute arbitrary scripts in another user&amp;#39;s browser session due to improper sanitization of user-supplied input.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to execute arbitrary scripts in another user&amp;#39;s browser session due to improper sanitization of user-supplied input.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-13320</guid>
    </item>
    <item>
      <title>GHSA-m49f-rvv4-r4rv</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m49f-rvv4-r4rv</link>
      <description>&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to execute arbitrary scripts in another user&amp;#39;s browser session due to improper sanitization of user-supplied input.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to execute arbitrary scripts in another user&amp;#39;s browser session due to improper sanitization of user-supplied input.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m49f-rvv4-r4rv</guid>
    </item>
    <item>
      <title>NCSC-2026-0222 — Kwetsbaarheden verholpen in GitLab Enterprise Edition en Community Edition</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0222</link>
      <description>NCSC-2026-0222</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0222</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-13320</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-13320</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab&lt;/p&gt;
&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to execute arbitrary scripts in another user&amp;#39;s browser session due to improper sanitization of user-supplied input.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gitlab&lt;/p&gt;
&lt;p&gt;GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to execute arbitrary scripts in another user&amp;#39;s browser session due to improper sanitization of user-supplied input.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-13320</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2265 — GitLab: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2265</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um beliebigen Code auszuführen, Cross-Site-Scripting durchzuführen, Daten zu manipulieren oder vertrauliche Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in GitLab ausnutzen, um beliebigen Code auszuführen, Cross-Site-Scripting durchzuführen, Daten zu manipulieren oder vertrauliche Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2265</guid>
    </item>
  </channel>
</rss>
