Redis core team reports:
+++ ++ An authenticated with sufficient privileges may create a + malformed ACL selector which, when accessed, triggers a + server panic and subsequent denial of service.The problem + exists in Redis 7.0.0 or newer. +
+
Redis core team reports:
+++ ++ An authenticated user may use a specially crafted Lua + script to manipulate the garbage collector and potentially + lead to remote code execution. The problem exists in all + versions of Redis with Lua scripting. +
+
Gitlab reports:
Possible access token exposure in GitLab logs
Cyclic reference of epics leads resource exhaustion
Unauthorized user can manipulate status of issues in public projects
Instance SAML does not respect external_provider configuration