CVE & Exploit Intelligence Database

Updated 26m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,223 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,429 researchers
4 results Clear all
CVE-2023-0326 5.0 MEDIUM EPSS 0.00
GitLab <2.11.0 - Info Disclosure
An issue has been discovered in GitLab DAST API scanner affecting all versions starting from 1.6.50 before 2.11.0, where Authorization headers was leaked in vulnerability report evidence.
Mar 27, 2023
CVE-2022-3767 7.7 HIGH EPSS 0.00
Gitlab Dynamic Application Security T... - Improper Input Validation
Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every request, regardless of the host.
CWE-20 Mar 09, 2023
CVE-2022-4317 5.0 MEDIUM EPSS 0.00
GitLab DAST analyzer <3.0.51 - SSRF
An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 1.47 before 3.0.51, which sends custom request headers in redirects.
CWE-601 Mar 09, 2023
CVE-2022-4315 5.0 MEDIUM EPSS 0.00
GitLab <3.0.55 - Info Disclosure
An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 2.0 before 3.0.55, which sends custom request headers with every request on the authentication page.
CWE-863 Mar 08, 2023