A denial of service vulnerability was identified in GitLab CE/EE, versions 16.7.7 prior to 16.8.6, 16.9 prior to 16.9.4 and 16.10 prior to 16.10.2 which allows an attacker to spike the GitLab instance resources usage resulting in service degradation via chat integration feature.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: GitLab
Published: 2024-04-12T00:53:41.230Z
Updated: 2024-07-08T20:13:28.175Z
Reserved: 2023-12-04T16:30:20.261Z
Link: CVE-2023-6489
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-04-12T01:15:57.340
Modified: 2024-04-12T12:43:57.400
Link: CVE-2023-6489
JSON object: View
Redhat Information
No data.
CWE