Medium severity5.0NVD Advisory· Published Mar 8, 2023· Updated Jun 17, 2026
CVE-2022-4315
CVE-2022-4315
Description
An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 2.0 before 3.0.55, which sends custom request headers with every request on the authentication page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:a:gitlab:dynamic_application_security_testing_analyzer:*:*:*:*:*:*:*:*Range: >=2.0.0,<3.0.55
- Range: <3.0.55
<3.0.55+ 1 more
- (no CPE)range: <3.0.55
- (no CPE)range: >=2.0, <3.0.55
Patches
Vulnerability mechanics
References
3- gitlab.com/gitlab-org/gitlab/-/issues/384995nvdExploitVendor Advisory
- gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-4315.jsonnvdVendor Advisory
- hackerone.com/reports/1767525nvdPermissions Required
News mentions
0No linked articles in our index yet.