[shells3c](https://hackerone.com/shells3c)
13 credited records · 2 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
17Monitor | CVE-2025-12506No exploit | Use of Incorrectly-Resolved Name or Reference in GitLabgitlab · gitlab · CWE-706 | Medium4.3 | — | 0.3% | Jul 8, 2026 |
17Monitor | CVE-2025-12697No exploit | Improper Encoding or Escaping of Output in GitLabgitlab · gitlab · CWE-116 | Medium4.4 | — | 0.3% | Mar 11, 2026 |
21Monitor | CVE-2024-8116No exploit | Incorrect Authorization in GitLabgitlab · gitlab · CWE-863 | Medium5.3 | — | 0.4% | Dec 16, 2024 |
30Monitor | CVE-2023-5226No exploit | Improper Control of Generation of Code ('Code Injection') in GitLabgitlab · gitlab · CWE-94 | High7.5 | — | 0.6% | Dec 1, 2023 |
30Monitor | CVE-2023-3413No exploit | Insertion of Sensitive Information Into Sent Data in GitLabgitlab · gitlab · CWE-201 | High7.5 | — | 0.7% | Sep 29, 2023 |
22Monitor | CVE-2023-0989No exploit | Improper Ownership Management in GitLabgitlab · gitlab · CWE-282 | Medium5.7 | — | 0.5% | Sep 29, 2023 |
17Monitor | CVE-2023-1210No exploit | Generation of Error Message Containing Sensitive Information in GitLabgitlab · gitlab · CWE-209 | Medium4.3 | — | 0.6% | Aug 1, 2023 |
17Monitor | CVE-2022-4376No exploit | An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions sgitlab · gitlab | Medium4.3 | — | 0.8% | May 3, 2023 |
26Monitor | CVE-2023-0485No exploit | An issue has been discovered in GitLab affecting all versions starting from 13.11 before 15.8.5, all versions starting from 15.9 before 15.9gitlab · gitlab · CWE-668 | Medium6.5 | — | 1.0% | May 3, 2023 |
21Monitor | CVE-2023-1710No exploit | A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 gitlab · gitlab · CWE-200 | Medium5.3 | — | 0.8% | Apr 5, 2023 |
14Monitor | CVE-2022-3375No exploit | An issue has been discovered in GitLab affecting all versions starting from 11.10 before 15.8.5, all versions starting from 15.9 before 15.9gitlab · gitlab · CWE-535 | Low3.7 | — | 0.8% | Apr 5, 2023 |
21Monitor | CVE-2022-1352No exploit | Due to an insecure direct object reference vulnerability in Gitlab EE/CE affecting all versions from 11.0 prior to 14.8.6, 14.9 prior to 14.gitlab · gitlab · CWE-639 | Medium5.3 | — | 1.3% | May 11, 2022 |
17Monitor | CVE-2022-1417No exploit | Improper access control in GitLab CE/EE affecting all versions starting from 8.12 before 14.8.6, all versions starting from 14.9 before 14.9gitlab · gitlab · CWE-863 | Medium4.3 | — | 1.0% | May 10, 2022 |
- CVE-2025-1250617Monitor
Use of Incorrectly-Resolved Name or Reference in GitLab
MediumCVSS 4.3No exploitEPSS 0%gitlab · gitlabJul 8, 2026
- CVE-2025-1269717Monitor
Improper Encoding or Escaping of Output in GitLab
MediumCVSS 4.4No exploitEPSS 0%gitlab · gitlabMar 11, 2026
- CVE-2024-811621Monitor
Incorrect Authorization in GitLab
MediumCVSS 5.3No exploitEPSS 0%gitlab · gitlabDec 16, 2024
- CVE-2023-522630Monitor
Improper Control of Generation of Code ('Code Injection') in GitLab
HighCVSS 7.5No exploitEPSS 1%gitlab · gitlabDec 1, 2023
- CVE-2023-341330Monitor
Insertion of Sensitive Information Into Sent Data in GitLab
HighCVSS 7.5No exploitEPSS 1%gitlab · gitlabSep 29, 2023
- CVE-2023-098922Monitor
Improper Ownership Management in GitLab
MediumCVSS 5.7No exploitEPSS 1%gitlab · gitlabSep 29, 2023
- CVE-2023-121017Monitor
Generation of Error Message Containing Sensitive Information in GitLab
MediumCVSS 4.3No exploitEPSS 1%gitlab · gitlabAug 1, 2023
- CVE-2022-437617Monitor
An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions s
MediumCVSS 4.3No exploitEPSS 1%gitlab · gitlabMay 3, 2023
- CVE-2023-048526Monitor
An issue has been discovered in GitLab affecting all versions starting from 13.11 before 15.8.5, all versions starting from 15.9 before 15.9
MediumCVSS 6.5No exploitEPSS 1%gitlab · gitlabMay 3, 2023
- CVE-2023-171021Monitor
A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10
MediumCVSS 5.3No exploitEPSS 1%gitlab · gitlabApr 5, 2023
- CVE-2022-337514Monitor
An issue has been discovered in GitLab affecting all versions starting from 11.10 before 15.8.5, all versions starting from 15.9 before 15.9
LowCVSS 3.7No exploitEPSS 1%gitlab · gitlabApr 5, 2023
- CVE-2022-135221Monitor
Due to an insecure direct object reference vulnerability in Gitlab EE/CE affecting all versions from 11.0 prior to 14.8.6, 14.9 prior to 14.
MediumCVSS 5.3No exploitEPSS 1%gitlab · gitlabMay 11, 2022
- CVE-2022-141717Monitor
Improper access control in GitLab CE/EE affecting all versions starting from 8.12 before 14.8.6, all versions starting from 14.9 before 14.9
MediumCVSS 4.3No exploitEPSS 1%gitlab · gitlabMay 10, 2022