CVE-2023-0326: GitLab Dynamic Application Security Testing Analyzer
Medium severity, CVSS 4.3. EPSS: 0.8% chance of exploitation in the next 30 days.
An issue has been discovered in GitLab DAST API scanner affecting all versions starting from 1.6.50 before 2.11.0, where Authorization headers was leaked in vulnerability report evidence.
Affected products
- GitLab Dynamic Application Security Testing Analyzer: from 1.6.50, before 2.11.0 (fixed in 2.11.0)
Published 2023-03-27. Last modified 2026-06-17.