Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 943

github логотип

GHSA-j24v-67h6-cx49

больше 3 лет назад

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are marked as 'external' to become 'regular' users thus leading to privilege escalation for those users.

CVSS3: 6.8
EPSS: Низкий
debian логотип

CVE-2023-2182

больше 3 лет назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 6.8
EPSS: Низкий
nvd логотип

CVE-2023-2182

больше 3 лет назад

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are marked as 'external' to become 'regular' users thus leading to privilege escalation for those users.

CVSS3: 6.8
EPSS: Низкий
debian логотип

CVE-2023-1178

больше 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 5.7
EPSS: Низкий
nvd логотип

CVE-2023-1178

больше 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions from 8.6 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. File integrity may be compromised when source code or installation packages are pulled from a tag or from a release containing a ref to another commit.

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2023-0805

больше 3 лет назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 4.9
EPSS: Низкий
nvd логотип

CVE-2023-0805

больше 3 лет назад

An issue has been discovered in GitLab EE affecting all versions starting from 15.2 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to have access to the public projects of a public group even after being banned from the public group by the owner.

CVSS3: 4.9
EPSS: Низкий
debian логотип

CVE-2023-0756

больше 3 лет назад

An issue has been discovered in GitLab affecting all versions before 1 ...

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2023-0756

больше 3 лет назад

An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. The main branch of a repository with a specially crafted name allows an attacker to create repositories with malicious code, victims who clone or download these repositories will execute arbitrary code on their systems.

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2022-4376

больше 3 лет назад

An issue has been discovered in GitLab affecting all versions before 1 ...

CVSS3: 3.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-j24v-67h6-cx49

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are marked as 'external' to become 'regular' users thus leading to privilege escalation for those users.

CVSS3: 6.8
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2023-2182

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 6.8
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2023-2182

An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are marked as 'external' to become 'regular' users thus leading to privilege escalation for those users.

CVSS3: 6.8
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2023-1178

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 5.7
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2023-1178

An issue has been discovered in GitLab CE/EE affecting all versions from 8.6 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. File integrity may be compromised when source code or installation packages are pulled from a tag or from a release containing a ref to another commit.

CVSS3: 5.7
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2023-0805

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 4.9
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2023-0805

An issue has been discovered in GitLab EE affecting all versions starting from 15.2 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to have access to the public projects of a public group even after being banned from the public group by the owner.

CVSS3: 4.9
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2023-0756

An issue has been discovered in GitLab affecting all versions before 1 ...

CVSS3: 4.8
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2023-0756

An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. The main branch of a repository with a specially crafted name allows an attacker to create repositories with malicious code, victims who clone or download these repositories will execute arbitrary code on their systems.

CVSS3: 4.8
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-4376

An issue has been discovered in GitLab affecting all versions before 1 ...

CVSS3: 3.1
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу


Поделиться