Skip to content
Noroxi

[@ngalog](https://hackerone.com/ngalog)

3 credited records · 0 in the last 12 months · 0 in CISA KEV

Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.

Credited records

Researchers
  • Insufficient validation of authentication parameters in GitLab Pages for GitLab 11.5+ allows an attacker to steal a victim's API token if th

    MediumCVSS 6.5No exploitEPSS 1%

    gitlab · gitlabJan 15, 2021

  • CSRF in runner administration page in all versions of GitLab CE/EE allows an attacker who's able to target GitLab instance administrators to

    MediumCVSS 4.3No exploitEPSS 1%

    gitlab · gitlabNov 17, 2020

  • A vulnerability was discovered in GitLab versions prior to 13.1.

    MediumCVSS 6.5No exploitEPSS 1%

    gitlab · gitlabSep 30, 2020