|
Pentest scan says "Cookie without HttpOnly flag set" for /admin/usage_trends
|
|
2
|
49
|
May 20, 2026
|
|
Pentest scan says “OPTIONS method is enabled” for /api/v4/usage_data/track_event
|
|
2
|
39
|
May 20, 2026
|
|
Enforce Secret Push Protection on sub-group level
|
|
0
|
43
|
May 15, 2026
|
|
Encryption at rest of variables in database
|
|
4
|
311
|
April 30, 2026
|
|
Multiple CVEs nginx < 1.29.7 (Gitlab Omnibus v18.10.1-ee)
|
|
4
|
446
|
April 29, 2026
|
|
X-XSS- Protection is set to 0 in collect_events end point
|
|
3
|
185
|
April 17, 2026
|
|
How to prevent downstream .gitlab-ci.yml being modified by developers (role)?
|
|
1
|
122
|
April 2, 2026
|
|
Removing project from security montoring with more than 100 projects set
|
|
4
|
117
|
February 11, 2026
|
|
Semgrep.sarif: no such file or directory Error on Autoscaler executor
|
|
0
|
201
|
January 14, 2026
|
|
Again, locked due to an excessive number of unsuccessful sign in attempts
|
|
3
|
356
|
December 29, 2025
|
|
Account GITLAB has been locked due to an excessive number of unsuccessful sign in attempts' has been received
|
|
2
|
1668
|
December 22, 2025
|
|
Disabling GraphQL Introspection
|
|
4
|
1875
|
December 12, 2025
|
|
(SOLVED) Security issue? Getting strange "Unlock instructions" emails, are user emails leaked?
|
|
8
|
780
|
December 10, 2025
|
|
Posting a comment with preformatted HTML code renders that HTML during submission
|
|
1
|
255
|
November 18, 2025
|
|
SAST jobs are not being executed
|
|
0
|
281
|
October 10, 2025
|
|
How to extend expiration of access tokens
|
|
11
|
31625
|
October 9, 2025
|
|
The status of issues changed from False positive to Needs triage automatically
|
|
0
|
127
|
October 4, 2025
|
|
Backups running slow in podman container gitlab-ee:18.2.4-ee.0; messages on host from permissive SEClinux Oralce Linux
|
|
0
|
61
|
September 8, 2025
|
|
Pentest report showing Excessive exposed headers and allowed http methods for graphql endpoint
|
|
1
|
141
|
September 2, 2025
|
|
It shouldn't be possible to change password without 2FA
|
|
0
|
52
|
August 25, 2025
|
|
Secret Detection started to fail today due to token appearing in .git/config
|
|
3
|
410
|
August 6, 2025
|
|
Turn-off "Unknown sign-in from new location"?
|
|
4
|
6485
|
August 4, 2025
|
|
How to setup user to audit all projects' settings (approval rules)?
|
|
0
|
69
|
July 17, 2025
|
|
Reporting malicious repository
|
|
0
|
94
|
June 21, 2025
|
|
Developer docs or information on how to create a new secrets provider?
|
|
0
|
212
|
May 3, 2025
|
|
CE GitLab contacting snowplowstg.trx.gitlab.net
|
|
2
|
357
|
May 11, 2025
|
|
GitLab Security Dashboard does not display vulnerability reports when the job fails
|
|
0
|
389
|
May 8, 2025
|
|
GitLab Advanced Security discrepancies in dashboard for dependency scanning and SAST
|
|
3
|
362
|
April 21, 2025
|
|
GitLab Security Dashboard: Code flow is not displaying
|
|
1
|
262
|
April 4, 2025
|
|
What is the preferred way of storing a variable in GitLab without any collaborator ever seeing it?
|
|
6
|
24802
|
March 7, 2025
|