A comprehensive analysis of benign internet scanning activity from November 2024, examining how quickly and thoroughly various legitimate scanning services (like Shodan, Censys, and others) discover and probe new internet-facing assets. The study deployed 24 new sensors across 8 geographies and 5 autonomous systems, revealing that most scanners found new nodes within 5 minutes, with ONYPHE leading in first contacts.
A vulnerability was found in GitLab Community Edition and Enterprise Edition up to 14.7.6/14.8.4/14.9.1 and classified as problematic. This issue affects some unknown processing of the component Note Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2022-1175. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.