Low severity3.7NVD Advisory· Published Apr 5, 2023· Updated Jun 17, 2026
CVE-2023-0450
CVE-2023-0450
Description
An issue has been discovered in GitLab affecting all versions starting from 8.1 to 15.8.5, and from 15.9 to 15.9.4, and from 15.10 to 15.10.1. It was possible to add a branch with an ambiguous name that could be used to social engineer users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*+ 5 more
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*range: >=8.1.0,<15.8.5
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: >=8.1.0,<15.8.5
- cpe:2.3:a:gitlab:gitlab:15.10.0:*:*:*:community:*:*:*
- cpe:2.3:a:gitlab:gitlab:15.10.0:*:*:*:enterprise:*:*:*
- (no CPE)range: from 8.1 to 15.8.5, and from 15.9 to 15.9.4, and from 15.10 to 15.10.1
- (no CPE)range: >=8.1, <15.8.5
Patches
Vulnerability mechanics
References
3- gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0450.jsonnvdVendor Advisory
- gitlab.com/gitlab-org/gitlab/-/issues/388962nvdBroken Link
- hackerone.com/reports/1831547nvdPermissions Required
News mentions
0No linked articles in our index yet.