PT-2023-16180 · Gitlab · Gitlab Dast Api Scanner

·

CVE-2023-0326

·

Published

2023-03-27

·

Updated

2023-04-03

CVSS v3.1

5.0

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions GitLab DAST API scanner versions 1.6.50 through 2.11.0
Description An issue has been discovered in the GitLab DAST API scanner where Authorization headers were leaked in vulnerability report evidence.
Recommendations For GitLab DAST API scanner versions 1.6.50 through 2.11.0, update to version 2.11.0 or later to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2023-0326

Affected Products

Gitlab Dast Api Scanner