A vulnerability has been found in GitLab Community Edition and Enterprise Edition 8.15 (Bug Tracking Software) and classified as critical. This vulnerability affects an unknown code block of the component Gitea Importer. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.
GitLab Community Edition/Enterprise Edition 8.15 Gitea Importer server-side request forgery
CVE-2023-28843 : PAYPAL UP TO 3.16.3 ON PRESTASHOP SQL INJECTION
Description PrestaShop/paypal is an open source module for the PrestaShop web commerce ecosystem which provides paypal payment support. A SQL
CVE-2023-28727 : PANASONIC AISEG2 UP TO 2.93A HEADER X-FORWARDED-FOR IMPROPER AUTHENTICATION
Description Panasonic AiSEG2 versions 2.00J through 2.93A allows adjacent attackers bypass authentication due to mishandling of X-Forwarded-For headers. References https://www2.panasonic.biz/jp/densetsu/aiseg/firmup_info.html
CVE-2022-36980 : IVANTI AVALANCHE 188.8.131.5290 ENTERPRISESERVER SERVICE TOCTOU
Description This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche 184.108.40.20690. Although authentication is required