VDB
CVE-2024-1963
CVE-2024-1963
PUBLISHED
An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.4 prior to 16.10.7, starting from 16.11 prior to 16.11.4, and starting from 17.0 prior to 17.0.2. A vulnerability in GitLab's Asana integration allowed an attacker to potentially cause a regular expression denial of service by sending specially crafted requests.
EPSS 0.23% · 45.9th percentile
Risk Scores
EPSS Score
0.23%
45.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 8.4.0, 17.0.0, 16.11.0 |
| Bitnami | gitlab | 16.11.0, 17.0.0, 8.4.0 |
Timeline
- Jan 21, 1970 Security Advisory
- Jun 12, 2024 CVE Published
- Jun 13, 2024 EPSS Score
- Jul 6, 2024 EPSS Score
- Jul 29, 2024 EPSS Score
- Aug 24, 2024 EPSS Score
- Sep 16, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 9, 2024 EPSS Score
- Nov 1, 2024 EPSS Score
- Nov 24, 2024 EPSS Score
- Dec 17, 2024 EPSS Score