Critical GitLab flaw allows account takeover without user interaction, patch quickly! (CVE-2023-7028)Help Net Security·May 2, 08:55 UTC · May 2, 2024Vulnerability in the wildCVE-2023-7028CVE-2023-5356CVE-2023-4812+2 CVEs60
5379 GitLab servers vulnerable to zeroSecurity Affairs·Jan 24, 19:09 UTC · Jan 24, 2024VulnerabilityCVE-2023-702860
Week in review: GitLab account takeover flaw, attackers exploiting Ivanti Connect Secure zero-daysHelp Net Security·Jan 14, 00:00 UTC · Jan 14, 2024Ransomware in the wildCVE-2023-7028CVE-2024-20674CVE-2024-20700+4 CVEs60
GitLab fixed a critical zeroSecurity Affairs·Jan 13, 17:52 UTC · Jan 13, 2024VulnerabilityCVE-2023-7028CVE-2023-5356CVE-2023-4812+2 CVEs160
Urgent: GitLab Patches Critical Flaw Allowing Unauthorized Pipeline Job ExecutionThe Hacker News·Sep 12, 15:55 UTC · Sep 12, 2024Vulnerability in the wildCVE-2024-6678CVE-2023-5009CVE-2024-5655+2 CVEs60
An XSS flaw in GitLab allows attackers to take over accountsSecurity Affairs·May 24, 20:39 UTC · May 24, 2024Vulnerability in the wildCVE-2024-4835CVE-2023-7028160
Organizations patch CISA KEV list bugs 3.5 times faster than others, researchers findThe Record·May 2, 21:30 UTC · May 2, 2024Exploit / PoC in the wildCVE-2024-29988CVE-2024-21412CVE-2023-702860
Maximum-severity GitLab flaw allowing account hijacking under active exploitationArs Technica · Security·May 2, 19:02 UTC · May 2, 2024Exploit / PoC in the wildCVE-2023-702860
CISA adds GitLab flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 2, 10:39 UTC · May 2, 2024Exploit / PoC in the wildCVE-2023-7028160
CISA Warns of Active Exploitation of Severe GitLab Password Reset VulnerabilityThe Hacker News·May 2, 09:29 UTC · May 2, 2024Vulnerability in the wildCVE-2023-702860
URGENT: Upgrade GitLab - Critical Workspace Creation Flaw Allows File OverwriteThe Hacker News·Jan 30, 16:18 UTC · Jan 30, 2024VulnerabilityCVE-2024-0402CVE-2023-702860
Urgent: GitLab Releases Patch for Critical VulnerabilitiesThe Hacker News·Jan 12, 13:29 UTC · Jan 12, 2024VulnerabilityCVE-2023-7028CVE-2023-535660