An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Remote attackers could obtain sensitive information about issues, comments, and project titles via events API insecure direct object reference.
More Stories
buku-4.9-1.fc40
FEDORA-2025-df3432c3ee Packages in this update: buku-4.9-1.fc40 Update description: Update to 4.9 Read More
glibc-2.39-37.fc40
FEDORA-2025-69207650a4 Packages in this update: glibc-2.39-37.fc40 Update description: This update addresses two security vulnerabilities: * CVE-2025-0395: A buffer overflow may...
glibc-2.40-21.fc41
FEDORA-2025-497995b101 Packages in this update: glibc-2.40-21.fc41 Update description: This update addresses two security vulnerabilities: * CVE-2025-0395: A buffer overflow may...
buku-4.9-1.fc41
FEDORA-2025-e035838041 Packages in this update: buku-4.9-1.fc41 Update description: Update to 4.9 Read More
abseil-cpp-20240722.1-1.el10_0
FEDORA-EPEL-2025-5801c774a5 Packages in this update: abseil-cpp-20240722.1-1.el10_0 Update description: Update to 20240722.1 Fix potential integer overflow in hash container create/resize Read...
abseil-cpp-20240116.3-1.fc40
FEDORA-2025-f1288edd80 Packages in this update: abseil-cpp-20240116.3-1.fc40 Update description: Update to 20240116.3 Fix potential integer overflow in hash container create/resize Read...