Vulnerabilities (CVE)

Filtered by vendor Gitlab Subscribe
Filtered by product Dynamic Application Security Testing Analyzer
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-0326 1 Gitlab 1 Dynamic Application Security Testing Analyzer 2024-02-28 N/A 4.3 MEDIUM
An issue has been discovered in GitLab DAST API scanner affecting all versions starting from 1.6.50 before 2.11.0, where Authorization headers was leaked in vulnerability report evidence.
CVE-2022-3767 1 Gitlab 1 Dynamic Application Security Testing Analyzer 2024-02-28 N/A 6.5 MEDIUM
Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every request, regardless of the host.
CVE-2022-4317 1 Gitlab 1 Dynamic Application Security Testing Analyzer 2024-02-28 N/A 6.1 MEDIUM
An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 1.47 before 3.0.51, which sends custom request headers in redirects.
CVE-2022-4315 1 Gitlab 1 Dynamic Application Security Testing Analyzer 2024-02-28 N/A 6.5 MEDIUM
An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 2.0 before 3.0.55, which sends custom request headers with every request on the authentication page.