CVE-2022-3767

Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every request, regardless of the host.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:gitlab:dynamic_application_security_testing_analyzer:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-03-09 23:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-3767

Mitre link : CVE-2022-3767

CVE.ORG link : CVE-2022-3767


JSON object : View

Products Affected

gitlab

  • dynamic_application_security_testing_analyzer