CVE-2023-6195 | GitLab Community Edition/Enterprise Edition up to 16.9.6/16.10.4/16.11.1 server-side request forgery (Issue 432276)
CVE-2023-6195 | GitLab Community Edition/Enterprise Edition up to 16.9.6/16.10.4/16.11.1 server-side request forgery (Issue 432276)
A vulnerability has been found in GitLab Community Edition and Enterprise Edition up to 16.9.6/16.10.4/16.11.1 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to server-side request forgery. This vulnerability is known as CVE-2023-6195. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.Son Yazılar
- CVE-2025-1835 | osuuu LightPicture 1.2.2 /app/controller/Api.php upload file unrestricted upload
- CVE-2025-1834 | zj1983 zz up to 2024-8 /resolve file unrestricted upload
- CVE-2025-1833 | zj1983 zz up to 2024-8 HTTP Request Customer_noticeAction.java sendNotice url server-side request forgery
- CVE-2025-1832 | zj1983 zz up to 2024-8 ZroleAction.java getUserList roleid sql injection
- CVE-2025-1831 | zj1983 zz up to 2024-8 ZorgAction.java GetDBUser user_id sql injection
- CVE-2025-1830 | zj1983 zz up to 2024-8 Customer Information Customer Name cross site scripting
- CVE-2025-1829 | TOTOLINK X18 9.1.0cu.2024_B20220329 /cgi-bin/cstecgi.cgi setMtknatCfg mtkhnatEnable os command injection
- CVE-2024-41778 | IBM Controller up to 11.0.1/11.1.0 User Account weak password
- CVE-2025-1821 | zj1983 zz up to 2024-8 ZorgAction.java getUserOrgForUserId userID sql injection
- CVE-2025-1820 | zj1983 zz up to 2024-8 ZworkflowAction.java getOaWid tableId sql injection