{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-14T18:45:28.627","vulnerabilities":[{"cve":{"id":"CVE-2023-6489","sourceIdentifier":"cve@gitlab.com","published":"2024-04-12T01:15:57.340","lastModified":"2024-12-11T19:06:06.800","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"A denial of service vulnerability was identified in GitLab CE\/EE, versions 16.7.7 prior to 16.8.6, 16.9 prior to 16.9.4 and 16.10 prior to 16.10.2 which allows an attacker to spike the GitLab instance resources usage resulting in service degradation via chat integration feature."},{"lang":"es","value":"Se identificó una vulnerabilidad de denegación de servicio en GitLab CE\/EE, versiones 16.7.7 anteriores a 16.8.6, 16.9 anteriores a 16.9.4 y 16.10 anteriores a 16.10.2, que permite a un atacante aumentar el uso de recursos de la instancia de GitLab, lo que resulta en servicio. degradación a través de la función de integración de chat."}],"metrics":{"cvssMetricV31":[{"source":"cve@gitlab.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:N\/A:L","baseScore":4.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW"},"exploitabilityScore":2.8,"impactScore":1.4},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:N\/A:H","baseScore":6.5,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":3.6}]},"weaknesses":[{"source":"cve@gitlab.com","type":"Secondary","description":[{"lang":"en","value":"CWE-1333"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-1333"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*","versionStartIncluding":"16.7.7","versionEndExcluding":"16.8.6","matchCriteriaId":"CEC51D1F-F1B7-44E4-BB00-4C57D0F7988C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"16.7.7","versionEndExcluding":"16.8.6","matchCriteriaId":"754B2043-9069-40C7-8238-A6C163409EB0"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*","versionStartIncluding":"16.9.0","versionEndExcluding":"16.9.4","matchCriteriaId":"6C090961-541F-48DB-A98E-B7227E2BEF1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"16.9.0","versionEndExcluding":"16.9.4","matchCriteriaId":"CE07887F-4BE5-4269-9C3B-10CF3E2E307E"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*","versionStartIncluding":"16.10.0","versionEndExcluding":"16.10.2","matchCriteriaId":"F66DCEFD-34BA-48AA-8154-D34480ADEF3B"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"16.10.0","versionEndExcluding":"16.10.2","matchCriteriaId":"5D01A2BB-5343-4AF5-AAD0-9D3AB09C6CBE"}]}]}],"references":[{"url":"https:\/\/gitlab.com\/gitlab-org\/gitlab\/-\/issues\/433520","source":"cve@gitlab.com","tags":["Broken Link"]},{"url":"https:\/\/hackerone.com\/reports\/2262450","source":"cve@gitlab.com","tags":["Permissions Required"]},{"url":"https:\/\/gitlab.com\/gitlab-org\/gitlab\/-\/issues\/433520","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"https:\/\/hackerone.com\/reports\/2262450","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Permissions Required"]}]}}]}