Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 920

debian логотип

CVE-2024-9512

около 1 года назад

An issue has been discovered in GitLab EE affecting all versions prior ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-fccc-r92h-5q24

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. It was possible for authenticated users to access arbitrary compliance frameworks, leading to unauthorized data disclosure.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-wjcq-cqhf-f7rm

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions starting with 18.0 before 18.0.2. Under certain conditions html injection in new search page could lead to account takeover.

CVSS3: 8.7
EPSS: Низкий
github логотип

GHSA-wjh7-hp74-8r7h

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions from 2.1.0 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. A lack of input validation in HTTP responses could allow an authenticated user to cause denial of service.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-rp5v-chq5-pw9q

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2, allow an attacker to trigger an infinite redirect loop, potentially leading to a denial of service condition.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-r66m-9f9x-jv46

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions from 8.7 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. Improper input validation in Tokens Names could be used to trigger a denial of service.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-27jm-6pj2-8w7g

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. Improper output encoding in the snipper viewer functionality lead to Cross-Site scripting attacks.

CVSS3: 8.7
EPSS: Низкий
github логотип

GHSA-9c34-92qm-j7ff

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions from 8.13 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. A lack of input validation in Board Names could be used to trigger a denial of service.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2025-5195

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. It was possible for authenticated users to access arbitrary compliance frameworks, leading to unauthorized data disclosure.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-5195

около 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2024-9512

An issue has been discovered in GitLab EE affecting all versions prior ...

CVSS3: 5.3
0%
Низкий
около 1 года назад
github логотип
GHSA-fccc-r92h-5q24

An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. It was possible for authenticated users to access arbitrary compliance frameworks, leading to unauthorized data disclosure.

CVSS3: 4.3
0%
Низкий
около 1 года назад
github логотип
GHSA-wjcq-cqhf-f7rm

An issue has been discovered in GitLab CE/EE affecting all versions starting with 18.0 before 18.0.2. Under certain conditions html injection in new search page could lead to account takeover.

CVSS3: 8.7
8%
Низкий
около 1 года назад
github логотип
GHSA-wjh7-hp74-8r7h

An issue has been discovered in GitLab CE/EE affecting all versions from 2.1.0 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. A lack of input validation in HTTP responses could allow an authenticated user to cause denial of service.

CVSS3: 6.5
1%
Низкий
около 1 года назад
github логотип
GHSA-rp5v-chq5-pw9q

An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2, allow an attacker to trigger an infinite redirect loop, potentially leading to a denial of service condition.

CVSS3: 7.5
1%
Низкий
около 1 года назад
github логотип
GHSA-r66m-9f9x-jv46

An issue has been discovered in GitLab CE/EE affecting all versions from 8.7 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. Improper input validation in Tokens Names could be used to trigger a denial of service.

CVSS3: 6.5
0%
Низкий
около 1 года назад
github логотип
GHSA-27jm-6pj2-8w7g

An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. Improper output encoding in the snipper viewer functionality lead to Cross-Site scripting attacks.

CVSS3: 8.7
0%
Низкий
около 1 года назад
github логотип
GHSA-9c34-92qm-j7ff

An issue has been discovered in GitLab CE/EE affecting all versions from 8.13 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. A lack of input validation in Board Names could be used to trigger a denial of service.

CVSS3: 6.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-5195

An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. It was possible for authenticated users to access arbitrary compliance frameworks, leading to unauthorized data disclosure.

CVSS3: 4.3
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-5195

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 4.3
0%
Низкий
около 1 года назад

Уязвимостей на страницу


Поделиться