Tag
cve-2023-7028
Safeguard articles tagged "cve-2023-7028" — guides, analysis, and best practices for software supply chain and application security.
2 articles
Vulnerability Analysis
CVE-2023-7028: GitLab Community and Enterprise Editions Improper Access Control Vulnerability
CVE-2023-7028 affects GitLab GitLab CE/EE and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-05-01.
Sep 17, 20263 min read
Vulnerability Analysis
GitLab Account Takeover via Password Reset (CVE-2023-7028) Explained
CVE-2023-7028 let attackers send GitLab password-reset links to an address they controlled — a zero-interaction account takeover scored 10.0. Here's the flaw and the fix.
Jul 5, 20265 min read
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.