FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Gitlab -- vulnerabilities

Affected packages
16.10.0 <= gitlab-ce < 16.10.1
16.9.0 <= gitlab-ce < 16.9.3
gitlab-ce < 16.8.5

Details

VuXML ID d2992bc2-ed18-11ee-96dc-001b217b3468
Discovery 2024-03-27
Entry 2024-03-28

Gitlab reports:

Stored-XSS injected in Wiki page via Banzai pipeline

DOS using crafted emojis

References

CVE Name CVE-2023-6371
CVE Name CVE-2024-2818
URL https://about.gitlab.com/releases/2024/03/27/security-release-gitlab-16-10-1-released/