Vulnerabilities (CVE)

Filtered by vendor Gitlab Subscribe
Filtered by product Dynamic Application Security Testing Analyzer
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-0326 1 Gitlab 1 Dynamic Application Security Testing Analyzer 2024-11-21 N/A 5.0 MEDIUM
An issue has been discovered in GitLab DAST API scanner affecting all versions starting from 1.6.50 before 2.11.0, where Authorization headers was leaked in vulnerability report evidence.
CVE-2022-4317 1 Gitlab 1 Dynamic Application Security Testing Analyzer 2024-11-21 N/A 5.0 MEDIUM
An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 1.47 before 3.0.51, which sends custom request headers in redirects.
CVE-2022-4315 1 Gitlab 1 Dynamic Application Security Testing Analyzer 2024-11-21 N/A 5.0 MEDIUM
An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 2.0 before 3.0.55, which sends custom request headers with every request on the authentication page.
CVE-2022-3767 1 Gitlab 1 Dynamic Application Security Testing Analyzer 2024-11-21 N/A 7.7 HIGH
Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every request, regardless of the host.