Loading HuntDB...

GHSA-c729-m2g9-m3xv

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.3 before 15.6.7, all versions starting from 15.7 before 15.7.6, all versions starting from 15.8 before 15.8.1. An attacker may upload a crafted CI job artifact zip file in a project that uses dynamic child pipelines and make a sidekiq job allocate a lot of memory. In GitLab instances where Sidekiq is memory-limited, this may cause Denial of Service.

Related CVEs

Key Information

GHSA ID
GHSA-c729-m2g9-m3xv
Published
February 14, 2023 12:30 AM
Last Modified
February 27, 2023 6:32 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 3, 2025 6:48 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.