Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 17.0.8 | 17.0.8 | ||
| 17.0.7 | 17.0.7 | ||
| 17.0.6 | 17.0.6 | ||
| 17.0.5 | 17.0.5 | ||
| 17.0.4 | 17.0.4 | ||
| 17.0.3 | 17.0.3 | ||
| 17.0.2 | 17.0.2 | ||
| 17.0.1 | 17.0.1 | ||
| 17.0.0 | 17.0.0 |
Показывать по
Количество 5 943
GHSA-j24v-67h6-cx49
An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are marked as 'external' to become 'regular' users thus leading to privilege escalation for those users.
CVE-2023-2182
An issue has been discovered in GitLab EE affecting all versions start ...
CVE-2023-2182
An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are marked as 'external' to become 'regular' users thus leading to privilege escalation for those users.
CVE-2023-1178
An issue has been discovered in GitLab CE/EE affecting all versions fr ...
CVE-2023-1178
An issue has been discovered in GitLab CE/EE affecting all versions from 8.6 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. File integrity may be compromised when source code or installation packages are pulled from a tag or from a release containing a ref to another commit.
CVE-2023-0805
An issue has been discovered in GitLab EE affecting all versions start ...
CVE-2023-0805
An issue has been discovered in GitLab EE affecting all versions starting from 15.2 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to have access to the public projects of a public group even after being banned from the public group by the owner.
CVE-2023-0756
An issue has been discovered in GitLab affecting all versions before 1 ...
CVE-2023-0756
An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. The main branch of a repository with a specially crafted name allows an attacker to create repositories with malicious code, victims who clone or download these repositories will execute arbitrary code on their systems.
CVE-2022-4376
An issue has been discovered in GitLab affecting all versions before 1 ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-j24v-67h6-cx49 An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are marked as 'external' to become 'regular' users thus leading to privilege escalation for those users. | CVSS3: 6.8 | 1% Низкий | больше 3 лет назад | |
CVE-2023-2182 An issue has been discovered in GitLab EE affecting all versions start ... | CVSS3: 6.8 | 1% Низкий | больше 3 лет назад | |
CVE-2023-2182 An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are marked as 'external' to become 'regular' users thus leading to privilege escalation for those users. | CVSS3: 6.8 | 1% Низкий | больше 3 лет назад | |
CVE-2023-1178 An issue has been discovered in GitLab CE/EE affecting all versions fr ... | CVSS3: 5.7 | 1% Низкий | больше 3 лет назад | |
CVE-2023-1178 An issue has been discovered in GitLab CE/EE affecting all versions from 8.6 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. File integrity may be compromised when source code or installation packages are pulled from a tag or from a release containing a ref to another commit. | CVSS3: 5.7 | 1% Низкий | больше 3 лет назад | |
CVE-2023-0805 An issue has been discovered in GitLab EE affecting all versions start ... | CVSS3: 4.9 | 1% Низкий | больше 3 лет назад | |
CVE-2023-0805 An issue has been discovered in GitLab EE affecting all versions starting from 15.2 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to have access to the public projects of a public group even after being banned from the public group by the owner. | CVSS3: 4.9 | 1% Низкий | больше 3 лет назад | |
CVE-2023-0756 An issue has been discovered in GitLab affecting all versions before 1 ... | CVSS3: 4.8 | 1% Низкий | больше 3 лет назад | |
CVE-2023-0756 An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. The main branch of a repository with a specially crafted name allows an attacker to create repositories with malicious code, victims who clone or download these repositories will execute arbitrary code on their systems. | CVSS3: 4.8 | 1% Низкий | больше 3 лет назад | |
CVE-2022-4376 An issue has been discovered in GitLab affecting all versions before 1 ... | CVSS3: 3.1 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу