Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12839 | An issue has been discovered in GitLab affecting versions starting from 15.1 before 15.8.5, 15.9 before 15.9.4, and 15.10 before 15.10.1. A maintainer could modify a webhook URL to leak masked webhook secrets by adding a new parameter to the url. This addresses an incomplete fix for CVE-2022-4342. |
Mon, 10 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2025-02-10T20:59:42.972Z
Reserved: 2023-02-15T00:00:00.000Z
Link: CVE-2023-0838
Updated: 2024-08-02T05:24:34.393Z
Status : Modified
Published: 2023-04-05T21:15:07.153
Modified: 2025-02-10T21:15:13.510
Link: CVE-2023-0838
No data.
OpenCVE Enrichment
No data.
EUVD