Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 918

debian логотип

CVE-2026-6883

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 2.6
EPSS: Низкий
nvd логотип

CVE-2026-6883

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions from 15.7 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user to bypass merge request approval requirements due to improper cleanup of orphaned policy records.

CVSS3: 2.6
EPSS: Низкий
debian логотип

CVE-2026-6335

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2026-6335

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.3 that under certain conditions could have allowed an authenticated user to execute arbitrary code in another user's browser session due to improper sanitization.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2026-6073

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 8.7
EPSS: Низкий
nvd логотип

CVE-2026-6073

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user to execute arbitrary JavaScript in other users' browsers due to improper input sanitization.

CVSS3: 8.7
EPSS: Низкий
debian логотип

CVE-2026-6063

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2026-6063

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions from 11.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that under certain conditions could have allowed an authenticated user with developer-role permissions to remove code owner approval rules from merge requests due to improper access control.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2026-4527

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-4527

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 11.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an unauthenticated user to create unauthorized Jira subscriptions for a targeted user's namespace via a specially crafted link due to missing CSRF protection.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2026-6883

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 2.6
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6883

GitLab has remediated an issue in GitLab EE affecting all versions from 15.7 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user to bypass merge request approval requirements due to improper cleanup of orphaned policy records.

CVSS3: 2.6
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-6335

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 5.4
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6335

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.3 that under certain conditions could have allowed an authenticated user to execute arbitrary code in another user's browser session due to improper sanitization.

CVSS3: 5.4
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-6073

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 8.7
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6073

GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user to execute arbitrary JavaScript in other users' browsers due to improper input sanitization.

CVSS3: 8.7
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-6063

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 4.3
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6063

GitLab has remediated an issue in GitLab EE affecting all versions from 11.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that under certain conditions could have allowed an authenticated user with developer-role permissions to remove code owner approval rules from merge requests due to improper access control.

CVSS3: 4.3
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-4527

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 6.5
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-4527

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 11.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an unauthenticated user to create unauthorized Jira subscriptions for a targeted user's namespace via a specially crafted link due to missing CSRF protection.

CVSS3: 6.5
0%
Низкий
3 месяца назад

Уязвимостей на страницу


Поделиться