Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"
Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

18.618.718.8202520262027

Недавние уязвимости Gitlab

Количество 5 332

nvd логотип

CVE-2025-7449

2 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an authenticated user with specific permissions to cause a denial of service condition through HTTP response processing.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-6195

2 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-6195

2 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions from 13.7 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an authenticated user to view information from security reports under certain configuration conditions.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-13611

2 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.2 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an authenticated user with access to certain logs to obtain sensitive tokens under specific conditions.

CVSS3: 2
EPSS: Низкий
debian логотип

CVE-2025-13611

2 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 2
EPSS: Низкий
nvd логотип

CVE-2025-12653

2 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by changing headers on some requests.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-12653

2 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2025-12571

2 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an unauthenticated user to cause a Denial of Service condition by sending specifically crafted requests containing malicious JSON payloads.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-12571

2 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2025-16470

2 месяца назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с обходом аутентификации посредством спуфинга, позволяющая нарушителю присоединиться к произвольным организациям

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2025-7449

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an authenticated user with specific permissions to cause a denial of service condition through HTTP response processing.

CVSS3: 6.5
0%
Низкий
2 месяца назад
debian логотип
CVE-2025-6195

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 4.3
0%
Низкий
2 месяца назад
nvd логотип
CVE-2025-6195

GitLab has remediated an issue in GitLab EE affecting all versions from 13.7 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an authenticated user to view information from security reports under certain configuration conditions.

CVSS3: 4.3
0%
Низкий
2 месяца назад
nvd логотип
CVE-2025-13611

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.2 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an authenticated user with access to certain logs to obtain sensitive tokens under specific conditions.

CVSS3: 2
0%
Низкий
2 месяца назад
debian логотип
CVE-2025-13611

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 2
0%
Низкий
2 месяца назад
nvd логотип
CVE-2025-12653

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by changing headers on some requests.

CVSS3: 6.5
0%
Низкий
2 месяца назад
debian логотип
CVE-2025-12653

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 6.5
0%
Низкий
2 месяца назад
nvd логотип
CVE-2025-12571

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an unauthenticated user to cause a Denial of Service condition by sending specifically crafted requests containing malicious JSON payloads.

CVSS3: 7.5
0%
Низкий
2 месяца назад
debian логотип
CVE-2025-12571

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.5
0%
Низкий
2 месяца назад
fstec логотип
BDU:2025-16470

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с обходом аутентификации посредством спуфинга, позволяющая нарушителю присоединиться к произвольным организациям

CVSS3: 6.5
0%
Низкий
2 месяца назад

Уязвимостей на страницу


Поделиться