Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 918

nvd логотип

CVE-2026-2900

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions from 16.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that when instance-level approval rule editing prevention was enabled, could have allowed an authenticated user with Maintainer permissions to modify or delete project approval rules due to missing authorization checks.

CVSS3: 2.7
EPSS: Низкий
debian логотип

CVE-2026-2900

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 2.7
EPSS: Низкий
nvd логотип

CVE-2026-1659

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.0 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an unauthenticated user to cause denial of service by sending specially crafted requests due to insufficient input validation.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-1659

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-1338

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with developer-role permissions to delete protected container registry tags due to improper authorization checks.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2026-1338

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2026-1322

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.0 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with a read_api scoped OAuth application to create issues and add comments to issues in private projects due to improper authorization.

CVSS3: 6.8
EPSS: Низкий
debian логотип

CVE-2026-1322

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 6.8
EPSS: Низкий
nvd логотип

CVE-2026-1184

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions from 11.9 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an unauthenticated user to cause denial of service by uploading a specially crafted file due to improper validation.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-1184

3 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2026-2900

GitLab has remediated an issue in GitLab EE affecting all versions from 16.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that when instance-level approval rule editing prevention was enabled, could have allowed an authenticated user with Maintainer permissions to modify or delete project approval rules due to missing authorization checks.

CVSS3: 2.7
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-2900

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 2.7
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-1659

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.0 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an unauthenticated user to cause denial of service by sending specially crafted requests due to insufficient input validation.

CVSS3: 7.5
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-1659

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.5
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-1338

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with developer-role permissions to delete protected container registry tags due to improper authorization checks.

CVSS3: 4.3
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-1338

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 4.3
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-1322

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.0 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with a read_api scoped OAuth application to create issues and add comments to issues in private projects due to improper authorization.

CVSS3: 6.8
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-1322

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 6.8
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-1184

GitLab has remediated an issue in GitLab EE affecting all versions from 11.9 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an unauthenticated user to cause denial of service by uploading a specially crafted file due to improper validation.

CVSS3: 6.5
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-1184

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 6.5
0%
Низкий
3 месяца назад

Уязвимостей на страницу


Поделиться