PT-2023-16180 · Gitlab · Gitlab Dast Api Scanner

Joaxcaron

·

Published

2023-03-27

·

Updated

2023-04-03

·

CVE-2023-0326

CVSS v3.1

5.0

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions GitLab DAST API scanner versions 1.6.50 through 2.11.0
Description An issue has been discovered in the GitLab DAST API scanner where Authorization headers were leaked in vulnerability report evidence.
Recommendations For GitLab DAST API scanner versions 1.6.50 through 2.11.0, update to version 2.11.0 or later to resolve the issue.

Exploit

Fix

Related Identifiers

CVE-2023-0326

Affected Products

Gitlab Dast Api Scanner