Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 943

github логотип

GHSA-rrjx-38j3-wx7p

больше 3 лет назад

An issue has been discovered in GitLab affecting all versions from 15.5 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. Due to improper permissions checks it was possible for an unauthorised user to remove an issue from an epic.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-96cq-cj7w-27g2

больше 3 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. It was possible for an unauthorised user to add child epics linked to victim's epic in an unrelated group.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-qwxw-v6wx-qh2q

больше 3 лет назад

A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 prior to 15.10.1 allows an attacker to view the count of internal notes for a given issue.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xjw7-jpqw-3q4x

больше 3 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. A search timeout could be triggered if a specific HTML payload was used in the issue description.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-1787

больше 3 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-1787

больше 3 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. A search timeout could be triggered if a specific HTML payload was used in the issue description.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-1710

больше 3 лет назад

A sensitive information disclosure vulnerability in GitLab affecting a ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-1710

больше 3 лет назад

A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 prior to 15.10.1 allows an attacker to view the count of internal notes for a given issue.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-1708

больше 3 лет назад

An issue was identified in GitLab CE/EE affecting all versions from 1. ...

CVSS3: 5.7
EPSS: Низкий
nvd логотип

CVE-2023-1708

больше 3 лет назад

An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9 prior to 15.9.4, and 15.10 prior to 15.10.1 where non-printable characters gets copied from clipboard, allowing unexpected commands to be executed on victim machine.

CVSS3: 5.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-rrjx-38j3-wx7p

An issue has been discovered in GitLab affecting all versions from 15.5 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. Due to improper permissions checks it was possible for an unauthorised user to remove an issue from an epic.

CVSS3: 4.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-96cq-cj7w-27g2

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. It was possible for an unauthorised user to add child epics linked to victim's epic in an unrelated group.

CVSS3: 4.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-qwxw-v6wx-qh2q

A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 prior to 15.10.1 allows an attacker to view the count of internal notes for a given issue.

CVSS3: 5.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xjw7-jpqw-3q4x

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. A search timeout could be triggered if a specific HTML payload was used in the issue description.

CVSS3: 5.3
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2023-1787

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2023-1787

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. A search timeout could be triggered if a specific HTML payload was used in the issue description.

CVSS3: 4.3
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2023-1710

A sensitive information disclosure vulnerability in GitLab affecting a ...

CVSS3: 5.3
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2023-1710

A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 prior to 15.10.1 allows an attacker to view the count of internal notes for a given issue.

CVSS3: 5.3
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2023-1708

An issue was identified in GitLab CE/EE affecting all versions from 1. ...

CVSS3: 5.7
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2023-1708

An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9 prior to 15.9.4, and 15.10 prior to 15.10.1 where non-printable characters gets copied from clipboard, allowing unexpected commands to be executed on victim machine.

CVSS3: 5.7
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу


Поделиться