PT-2023-16958 · Gitlab · Gitlab Dast Api Scanner+1

·

CVE-2023-1401

·

Publicado

2023-07-26

·

Atualizado

2024-10-08

CVSS v3.1

5.0

Média

VetorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions GitLab DAST scanner versions 3.0.29 through 4.0.5
Description An issue has been discovered in the GitLab DAST scanner where it leaks cross-site cookies on redirect during authorization.
Recommendations For versions 3.0.29 through 4.0.5, update to version 4.0.5 or later to resolve the issue.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BIT-GITLAB-2023-1401
CVE-2023-1401

Produtos afetados

Gitlab
Gitlab Dast Api Scanner