CVE-2023-1733

MEDIUM

GitLab 11.10-15.8.5, 15.9-15.9.4, 15.10-15.10.1 - Denial of Service in Prometheus Server

Title source: llm
STIX 2.1

Description

A denial of service condition exists in the Prometheus server bundled with GitLab affecting all versions from 11.10 to 15.8.5, 15.9 to 15.9.4 and 15.10 to 15.10.1.

Scores

CVSS v3 5.8
EPSS 0.0168
EPSS Percentile 82.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-400
Status published
Products (2)
gitlab/gitlab 15.10.0 (2 CPE variants)
gitlab/gitlab 11.10.0 - 15.8.5 (2 CPE variants)
Published Apr 05, 2023
Tracked Since Feb 18, 2026