By weakness (CWE)

CWE-153: related vulnerabilities

CVEs classified under CWE-153. Understanding the weakness class helps prioritize systemic fixes over one-off patches.

1 published vulnerability

  • CVE-2026-9694LOW 2.6

    GitLab CE/EE contains a vulnerability in its Service Desk feature that allows an unauthenticated attacker to impersonate the GitLab Support Bot through a specially crafted email reply. The attacker can inject arbitrary content into email template processing under specific conditions. While the vulnerability requires certain setup conditions and user interaction to exploit, it could lead to content injection that misleads users interacting with the support system.