CVE-2022-4315 Information

Description

An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 2.0 before 3.0.55 which sends custom request headers with every request on the authentication page.

Reference

https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-4315.json https://hackerone.com/reports/1767525 https://gitlab.com/gitlab-org/gitlab/-/issues/384995

Share on: