Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-6489

A denial of service vulnerability was identified in GitLab CE/EE, versions 16.7.7 prior to 16.8.6, 16.9 prior to 16.9.4 and 16.10 prior to 16.10.2 which allows an attacker to spike the GitLab instance resources usage resulting in service degradation via chat integration feature.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 35.2%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2023-6489
  • Gitlab » Gitlab » Version: 16.10.0
    cpe:2.3:a:gitlab:gitlab:16.10.0
  • Gitlab » Gitlab » Version: 16.10.1
    cpe:2.3:a:gitlab:gitlab:16.10.1
  • Gitlab » Gitlab » Version: 16.7.10
    cpe:2.3:a:gitlab:gitlab:16.7.10
  • Gitlab » Gitlab » Version: 16.7.7
    cpe:2.3:a:gitlab:gitlab:16.7.7
  • Gitlab » Gitlab » Version: 16.7.8
    cpe:2.3:a:gitlab:gitlab:16.7.8
  • Gitlab » Gitlab » Version: 16.7.9
    cpe:2.3:a:gitlab:gitlab:16.7.9
  • Gitlab » Gitlab » Version: 16.8.0
    cpe:2.3:a:gitlab:gitlab:16.8.0
  • Gitlab » Gitlab » Version: 16.8.1
    cpe:2.3:a:gitlab:gitlab:16.8.1
  • Gitlab » Gitlab » Version: 16.8.2
    cpe:2.3:a:gitlab:gitlab:16.8.2
  • Gitlab » Gitlab » Version: 16.8.3
    cpe:2.3:a:gitlab:gitlab:16.8.3
  • Gitlab » Gitlab » Version: 16.8.4
    cpe:2.3:a:gitlab:gitlab:16.8.4
  • Gitlab » Gitlab » Version: 16.8.5
    cpe:2.3:a:gitlab:gitlab:16.8.5
  • Gitlab » Gitlab » Version: 16.9.0
    cpe:2.3:a:gitlab:gitlab:16.9.0
  • Gitlab » Gitlab » Version: 16.9.1
    cpe:2.3:a:gitlab:gitlab:16.9.1
  • Gitlab » Gitlab » Version: 16.9.2
    cpe:2.3:a:gitlab:gitlab:16.9.2
  • Gitlab » Gitlab » Version: 16.9.3
    cpe:2.3:a:gitlab:gitlab:16.9.3


Contact Us

Shodan ® - All rights reserved