Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"
Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

18.618.718.8202520262027

Недавние уязвимости Gitlab

Количество 5 268

github логотип

GHSA-vrvm-qc4x-35pw

4 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 17.4 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 where certain string conversion methods exhibit performance degradation with large inputs.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2025-5069

4 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 3.5
EPSS: Низкий
nvd логотип

CVE-2025-5069

4 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 17.10 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 that could have allowed an authenticated user to gain unauthorized access to confidential issues by creating a project with an identical name to the victim's project.

CVSS3: 3.5
EPSS: Низкий
nvd логотип

CVE-2025-11042

4 месяца назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.2 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1, that allows an attacker to cause uncontrolled CPU consumption, potentially leading to a Denial of Service (DoS) condition while using specific GraphQL queries.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-11042

4 месяца назад

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-10868

4 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 17.4 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 where certain string conversion methods exhibit performance degradation with large inputs.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2025-10868

4 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-2g5p-9p7q-76jj

4 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 14.10 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 that could allow an attacker to inject malicious content that may lead to account takeover.

CVSS3: 8.7
EPSS: Низкий
github логотип

GHSA-38q5-vqf6-27rf

4 месяца назад

A privilege escalation issue has been discovered in GitLab EE affecting all versions from 16.6 prior to 18.2.7, 18.3 prior to 18.3.3, and 18.4 prior to 18.4.1 that could have allowed a developer with specific group management permissions to escalate their privileges and obtain unauthorized access to additional system capabilities.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-mq5h-8f38-3xwp

4 месяца назад

An issue has been discovered in GitLab CE/EE affecting all versions from 14.10 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1, that could have allowed Guest users to access sensitive information stored in virtual registry configurations.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-vrvm-qc4x-35pw

An issue has been discovered in GitLab CE/EE affecting all versions from 17.4 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 where certain string conversion methods exhibit performance degradation with large inputs.

CVSS3: 3.5
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-5069

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 3.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-5069

An issue has been discovered in GitLab CE/EE affecting all versions from 17.10 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 that could have allowed an authenticated user to gain unauthorized access to confidential issues by creating a project with an identical name to the victim's project.

CVSS3: 3.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-11042

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.2 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1, that allows an attacker to cause uncontrolled CPU consumption, potentially leading to a Denial of Service (DoS) condition while using specific GraphQL queries.

CVSS3: 4.3
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-11042

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 4.3
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-10868

An issue has been discovered in GitLab CE/EE affecting all versions from 17.4 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 where certain string conversion methods exhibit performance degradation with large inputs.

CVSS3: 3.5
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-10868

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 3.5
0%
Низкий
4 месяца назад
github логотип
GHSA-2g5p-9p7q-76jj

An issue has been discovered in GitLab CE/EE affecting all versions from 14.10 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 that could allow an attacker to inject malicious content that may lead to account takeover.

CVSS3: 8.7
0%
Низкий
4 месяца назад
github логотип
GHSA-38q5-vqf6-27rf

A privilege escalation issue has been discovered in GitLab EE affecting all versions from 16.6 prior to 18.2.7, 18.3 prior to 18.3.3, and 18.4 prior to 18.4.1 that could have allowed a developer with specific group management permissions to escalate their privileges and obtain unauthorized access to additional system capabilities.

CVSS3: 6.5
0%
Низкий
4 месяца назад
github логотип
GHSA-mq5h-8f38-3xwp

An issue has been discovered in GitLab CE/EE affecting all versions from 14.10 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1, that could have allowed Guest users to access sensitive information stored in virtual registry configurations.

CVSS3: 6.5
0%
Низкий
4 месяца назад

Уязвимостей на страницу


Поделиться