BIT-gitlab-2021-22171

Insufficient validation of authentication parameters in GitLab Pages for GitLab 11.5+ allows an attacker to steal a victim's API token if they click on a maliciously crafted linkRead More ...

Continue Reading
BIT-gitlab-2021-22171

Insufficient validation of authentication parameters in GitLab Pages for GitLab 11.5+ allows an attacker to steal a victim's API token if they click on a maliciously crafted linkRead More ...

Continue Reading
BIT-gitlab-2020-13358

A vulnerability in the internal Kubernetes agent api in GitLab CE/EE version 13.3 and above allows unauthorized access to private projects. Affected versions are: >=13.4, <13.4.5,&gt ...

Continue Reading
BIT-gitlab-2020-13346

Membership changes are not reflected in ToDo subscriptions in GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, allowing guest users to access confidential issues through...Read More ...

Continue Reading
BIT-gitlab-2021-22168

A regular expression denial of service issue has been discovered in NuGet API affecting all versions of GitLab starting from version...Read More ...

Continue Reading
BIT-gitlab-2021-22168

A regular expression denial of service issue has been discovered in NuGet API affecting all versions of GitLab starting from version...Read More ...

Continue Reading
BIT-tensorflow-2020-15202

In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the Shard API in TensorFlow expects the last argument to be a function taking two int64 (i.e., long long) arguments. However, there ...

Continue Reading
BIT-gitlab-2020-13333

A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to update an asset as a link from a release had a regex check which caused exponential number of backtracks ...

Continue Reading

Back to Main

Subscribe for the latest news: