
Repository to install CVE-2023-7028 vulnerable Gitlab instance
🎯 Want to practice with the new gitlab CVE ? Follow the instructions
git clone https://github.com/Trackflaw/CVE-2023-7028-Docker.git.cd CVE-2023-7028-Docker docker-compose.yml.external_url 'http://gitlab.domain.com' and hostname: 'gitlab.domain.com' with your domain (internal/external no care).docker compose up -d.http://localhost
adminTr4ckfl4w4th3W1nA Proof of Concept video is available on Trackflaw blog : https://blog.trackflaw.com/en/compromise-gitlab-accounts-with-cve-2023-7028/
Many PoCs are available online to automate the exploitation of this vulnerability: