An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and starting from 16.11 prior to 16.11.2 where abusing the API to filter branch and tags could lead to Denial of Service.
                
            References
                    | Link | Resource | 
|---|---|
| https://gitlab.com/gitlab-org/gitlab/-/issues/454815 | Broken Link | 
| https://gitlab.com/gitlab-org/gitlab/-/issues/454815 | Broken Link | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    13 Dec 2024, 01:10
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time | Gitlab gitlab Gitlab | |
| CPE | cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:* cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:* | |
| References | () https://gitlab.com/gitlab-org/gitlab/-/issues/454815 - Broken Link | 
21 Nov 2024, 09:43
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://gitlab.com/gitlab-org/gitlab/-/issues/454815 - | 
03 Oct 2024, 07:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-770 | |
| Summary | 
 | 
14 May 2024, 15:44
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2024-05-14 15:44
Updated : 2024-12-13 01:10
NVD link : CVE-2024-4539
Mitre link : CVE-2024-4539
CVE.ORG link : CVE-2024-4539
JSON object : View
Products Affected
                gitlab
- gitlab
CWE
                
                    
                        
                        CWE-770
                        
            Allocation of Resources Without Limits or Throttling
