Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 943

nvd логотип

CVE-2023-6564

больше 2 лет назад

An issue has been discovered in GitLab EE Premium and Ultimate affecting versions 16.4.3, 16.5.3, and 16.6.1. In projects using subgroups to define who can push and/or merge to protected branches, there may have been instances in which subgroup members with the Developer role were able to push or merge to protected branches.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-6564

больше 2 лет назад

An issue has been discovered in GitLab EE Premium and Ultimate affecti ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2023-6564

больше 2 лет назад

An issue has been discovered in GitLab EE Premium and Ultimate affecting versions 16.4.3, 16.5.3, and 16.6.1. In projects using subgroups to define who can push and/or merge to protected branches, there may have been instances in which subgroup members with the Developer role were able to push or merge to protected branches.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4fr5-6ccq-75w2

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions starting from 11.3 before 16.6.7, all versions starting from 16.7 before 16.7.5, all versions starting from 16.8 before 16.8.2. It was possible for an attacker to cause a client-side denial of service using malicious crafted content in the CODEOWNERS file.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-89x8-fvq4-x5w3

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions from 13.3.0 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows an attacker to do a resource exhaustion using GraphQL `vulnerabilitiesCountByDay`

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-8jj6-7vgp-rg47

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.

CVSS3: 6.7
EPSS: Низкий
nvd логотип

CVE-2024-1066

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions from 13.3.0 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows an attacker to do a resource exhaustion using GraphQL `vulnerabilitiesCountByDay`

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2024-1066

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions from ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2023-6840

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.

CVSS3: 6.7
EPSS: Низкий
debian логотип

CVE-2023-6840

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions from ...

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2023-6564

An issue has been discovered in GitLab EE Premium and Ultimate affecting versions 16.4.3, 16.5.3, and 16.6.1. In projects using subgroups to define who can push and/or merge to protected branches, there may have been instances in which subgroup members with the Developer role were able to push or merge to protected branches.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-6564

An issue has been discovered in GitLab EE Premium and Ultimate affecti ...

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-6564

An issue has been discovered in GitLab EE Premium and Ultimate affecting versions 16.4.3, 16.5.3, and 16.6.1. In projects using subgroups to define who can push and/or merge to protected branches, there may have been instances in which subgroup members with the Developer role were able to push or merge to protected branches.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4fr5-6ccq-75w2

An issue has been discovered in GitLab EE affecting all versions starting from 11.3 before 16.6.7, all versions starting from 16.7 before 16.7.5, all versions starting from 16.8 before 16.8.2. It was possible for an attacker to cause a client-side denial of service using malicious crafted content in the CODEOWNERS file.

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-89x8-fvq4-x5w3

An issue has been discovered in GitLab EE affecting all versions from 13.3.0 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows an attacker to do a resource exhaustion using GraphQL `vulnerabilitiesCountByDay`

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-8jj6-7vgp-rg47

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.

CVSS3: 6.7
1%
Низкий
больше 2 лет назад
nvd логотип
CVE-2024-1066

An issue has been discovered in GitLab EE affecting all versions from 13.3.0 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows an attacker to do a resource exhaustion using GraphQL `vulnerabilitiesCountByDay`

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
debian логотип
CVE-2024-1066

An issue has been discovered in GitLab EE affecting all versions from ...

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-6840

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.

CVSS3: 6.7
1%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-6840

An issue has been discovered in GitLab EE affecting all versions from ...

CVSS3: 6.7
1%
Низкий
больше 2 лет назад

Уязвимостей на страницу


Поделиться