Description
An issue has been discovered in GitLab CE/EE affecting all versions starting from 9.3 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2. A Regular Expression Denial of Service was possible via sending crafted payloads which use ProjectReferenceFilter to the preview_markdown endpoint.
Problem types
CWE-1333: Inefficient Regular Expression Complexity
Product status
9.3 (semver) before 16.0.8
16.1 (semver) before 16.1.3
16.2 (semver) before 16.2.2
Credits
Thanks [ryhmnlfj](https://hackerone.com/ryhmnlfj) for reporting this vulnerability through our HackerOne bug bounty program
References
gitlab.com/gitlab-org/gitlab/-/issues/416225 (GitLab Issue #416225)
hackerone.com/reports/1963255 (HackerOne Bug Bounty Report #1963255)
gitlab.com/gitlab-org/gitlab/-/issues/416225 (GitLab Issue #416225)
hackerone.com/reports/1963255 (HackerOne Bug Bounty Report #1963255)