cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-0326,https://securityvulnerability.io/vulnerability/CVE-2023-0326,,"An issue has been discovered in GitLab DAST API scanner affecting all versions starting from 1.6.50 before 2.11.0, where Authorization headers was leaked in vulnerability report evidence.",GitLab,GitLab DAST API scanner,4.3,MEDIUM,0.0006600000197067857,false,false,false,false,,false,false,2023-03-27T00:00:00.000Z,0 CVE-2022-3767,https://securityvulnerability.io/vulnerability/CVE-2022-3767,Missing Validation in DAST Analyzer Affects GitLab Products,"A critical security flaw exists in the DAST analyzer in GitLab that allows for missing validation of custom request headers. This vulnerability affects all versions of the DAST analyzer starting from 1.11.0 up to, but not including, 3.0.32. Attackers can exploit this flaw by sending malicious request headers, potentially affecting the behavior of the application and impacting the security of the host.",Gitlab,Dast,7.7,HIGH,0.0007300000288523734,false,false,false,false,,false,false,2023-03-09T00:00:00.000Z,0 CVE-2022-4317,https://securityvulnerability.io/vulnerability/CVE-2022-4317,,"An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 1.47 before 3.0.51, which sends custom request headers in redirects.",Gitlab,Dast,5,MEDIUM,0.0009899999713525176,false,false,false,false,,false,false,2023-03-09T00:00:00.000Z,0 CVE-2022-4206,https://securityvulnerability.io/vulnerability/CVE-2022-4206,,"A sensitive information leak issue has been discovered in all versions of DAST API scanner from 1.6.50 prior to 2.0.102, exposing the Authorization header in the vulnerability report",Gitlab,Dast Api Scanner,5,MEDIUM,0.000750000006519258,false,false,false,false,,false,false,2023-02-01T00:00:00.000Z,0