Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 17.0.8 | 17.0.8 | ||
| 17.0.7 | 17.0.7 | ||
| 17.0.6 | 17.0.6 | ||
| 17.0.5 | 17.0.5 | ||
| 17.0.4 | 17.0.4 | ||
| 17.0.3 | 17.0.3 | ||
| 17.0.2 | 17.0.2 | ||
| 17.0.1 | 17.0.1 | ||
| 17.0.0 | 17.0.0 |
Показывать по
Количество 5 914
GHSA-vjxq-fxvh-23vc
An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.4. It has Insecure Permissions (issue 1 of 2).
GHSA-jwfx-6cm3-63qg
An issue was discovered in GitLab Community and Enterprise Edition before 12.4. It has Incorrect Access Control.
GHSA-76vq-h32w-9w3v
An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.4 when moving an issue to a public project from a private one. It has Insecure Permissions.
GHSA-4v9p-4wgj-v3f6
An issue was discovered in GitLab Community and Enterprise Edition before 12.4 in the Project labels feature. It has Insecure Permissions.
GHSA-79q9-8ff3-x4g2
An issue was discovered in GitLab Community and Enterprise Edition before 12.4 in the autocomplete feature. It has Insecure Permissions (issue 2 of 2).
GHSA-pgmq-fmcf-6fcm
An issue was discovered in GitLab Community and Enterprise Edition 11 through 12.4 when building Nested GraphQL queries. It has a large or infinite loop.
GHSA-gx75-66mx-pjmm
An issue was discovered in GitLab Community and Enterprise Edition before 12.4. It has Insecure Permissions.
GHSA-m393-h7jj-5g9w
GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.
GHSA-r693-6q53-px82
An issue was discovered in GitLab Community and Enterprise Edition 8.18 through 12.2.1. An internal endpoint unintentionally disclosed information about the last pipeline that ran for a merge request.
GHSA-3cjm-23gg-86mm
An issue was discovered in GitLab Community and Enterprise Edition 8.1 through 12.2.1. Certain areas displaying Markdown were not properly sanitizing some XSS payloads.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-vjxq-fxvh-23vc An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.4. It has Insecure Permissions (issue 1 of 2). | 1% Низкий | около 4 лет назад | ||
GHSA-jwfx-6cm3-63qg An issue was discovered in GitLab Community and Enterprise Edition before 12.4. It has Incorrect Access Control. | 1% Низкий | около 4 лет назад | ||
GHSA-76vq-h32w-9w3v An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.4 when moving an issue to a public project from a private one. It has Insecure Permissions. | 1% Низкий | около 4 лет назад | ||
GHSA-4v9p-4wgj-v3f6 An issue was discovered in GitLab Community and Enterprise Edition before 12.4 in the Project labels feature. It has Insecure Permissions. | 1% Низкий | около 4 лет назад | ||
GHSA-79q9-8ff3-x4g2 An issue was discovered in GitLab Community and Enterprise Edition before 12.4 in the autocomplete feature. It has Insecure Permissions (issue 2 of 2). | 1% Низкий | около 4 лет назад | ||
GHSA-pgmq-fmcf-6fcm An issue was discovered in GitLab Community and Enterprise Edition 11 through 12.4 when building Nested GraphQL queries. It has a large or infinite loop. | 2% Низкий | около 4 лет назад | ||
GHSA-gx75-66mx-pjmm An issue was discovered in GitLab Community and Enterprise Edition before 12.4. It has Insecure Permissions. | 1% Низкий | около 4 лет назад | ||
GHSA-m393-h7jj-5g9w GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments. | CVSS3: 6.5 | 2% Низкий | около 4 лет назад | |
GHSA-r693-6q53-px82 An issue was discovered in GitLab Community and Enterprise Edition 8.18 through 12.2.1. An internal endpoint unintentionally disclosed information about the last pipeline that ran for a merge request. | 2% Низкий | около 4 лет назад | ||
GHSA-3cjm-23gg-86mm An issue was discovered in GitLab Community and Enterprise Edition 8.1 through 12.2.1. Certain areas displaying Markdown were not properly sanitizing some XSS payloads. | CVSS3: 6.1 | 1% Низкий | около 4 лет назад |
Уязвимостей на страницу