Loading HuntDB...

GHSA-p96p-59v7-xxp6

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A lack of length validation in GitLab CE/EE affecting all versions from 8.3 before 15.10.8, 15.11 before 15.11.7, and 16.0 before 16.0.2 allows an authenticated attacker to create a large Issue description via GraphQL which, when repeatedly requested, saturates CPU usage.

Related CVEs

Key Information

GHSA ID
GHSA-p96p-59v7-xxp6
Published
June 6, 2023 6:30 PM
Last Modified
April 4, 2024 4:36 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 3, 2025 6:48 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.