Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 17.0.8 | 17.0.8 | ||
| 17.0.7 | 17.0.7 | ||
| 17.0.6 | 17.0.6 | ||
| 17.0.5 | 17.0.5 | ||
| 17.0.4 | 17.0.4 | ||
| 17.0.3 | 17.0.3 | ||
| 17.0.2 | 17.0.2 | ||
| 17.0.1 | 17.0.1 | ||
| 17.0.0 | 17.0.0 |
Показывать по
Количество 5 943
CVE-2022-3330
It was possible for a guest user to read a todo targeting an inaccessible note in Gitlab CE/EE affecting all versions from 15.0 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1.
CVE-2022-3325
Improper access control in the GitLab CE/EE API affecting all versions ...
CVE-2022-3325
Improper access control in the GitLab CE/EE API affecting all versions starting from 12.8 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. Allowed for editing the approval rules via the API by an unauthorised user.
CVE-2022-3293
Email addresses were leaked in WebHook logs in GitLab EE affecting all ...
CVE-2022-3293
Email addresses were leaked in WebHook logs in GitLab EE affecting all versions from 9.3 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1
CVE-2022-3291
Serialization of sensitive data in GitLab EE affecting all versions fr ...
CVE-2022-3291
Serialization of sensitive data in GitLab EE affecting all versions from 14.9 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 can leak sensitive information via cache
CVE-2022-3288
A branch/tag name confusion in GitLab CE/EE affecting all versions pri ...
CVE-2022-3288
A branch/tag name confusion in GitLab CE/EE affecting all versions prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows an attacker to manipulate pages where the content of the default branch would be expected.
CVE-2022-3286
Lack of IP address checking in GitLab EE affecting all versions from 1 ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2022-3330 It was possible for a guest user to read a todo targeting an inaccessible note in Gitlab CE/EE affecting all versions from 15.0 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1. | CVSS3: 4.3 | 1% Низкий | почти 4 года назад | |
CVE-2022-3325 Improper access control in the GitLab CE/EE API affecting all versions ... | CVSS3: 2.7 | 0% Низкий | почти 4 года назад | |
CVE-2022-3325 Improper access control in the GitLab CE/EE API affecting all versions starting from 12.8 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. Allowed for editing the approval rules via the API by an unauthorised user. | CVSS3: 2.7 | 0% Низкий | почти 4 года назад | |
CVE-2022-3293 Email addresses were leaked in WebHook logs in GitLab EE affecting all ... | CVSS3: 3.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3293 Email addresses were leaked in WebHook logs in GitLab EE affecting all versions from 9.3 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 | CVSS3: 3.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3291 Serialization of sensitive data in GitLab EE affecting all versions fr ... | CVSS3: 6.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3291 Serialization of sensitive data in GitLab EE affecting all versions from 14.9 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 can leak sensitive information via cache | CVSS3: 6.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3288 A branch/tag name confusion in GitLab CE/EE affecting all versions pri ... | CVSS3: 3.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3288 A branch/tag name confusion in GitLab CE/EE affecting all versions prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows an attacker to manipulate pages where the content of the default branch would be expected. | CVSS3: 3.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3286 Lack of IP address checking in GitLab EE affecting all versions from 1 ... | CVSS3: 5.3 | 0% Низкий | почти 4 года назад |
Уязвимостей на страницу