Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 918

debian логотип

CVE-2026-3988

4 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-3988

4 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.5 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an unauthenticated user to cause a denial of service by making the GitLab instance unresponsive due to improper input validation in GraphQL request processing.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-3857

4 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2026-3857

4 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an unauthenticated user to execute arbitrary GraphQL mutations on behalf of authenticated users due to insufficient CSRF protection.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2026-2995

4 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions from 15.4 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an authenticated user to add email addresses to targeted user accounts due to improper sanitization of HTML content.

CVSS3: 7.7
EPSS: Низкий
debian логотип

CVE-2026-2995

4 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 7.7
EPSS: Низкий
nvd логотип

CVE-2026-2973

4 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.7 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an authenticated user to execute arbitrary JavaScript in a user's browser due to improper sanitization of entity-encoded content in Mermaid diagrams.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2026-2973

4 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2026-2745

4 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 7.11 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an unauthenticated user to bypass WebAuthn two-factor authentication and gain unauthorized access to user accounts due to inconsistent input validation in the authentication process.

CVSS3: 6.8
EPSS: Низкий
debian логотип

CVE-2026-2745

4 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2026-3988

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-3988

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.5 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an unauthenticated user to cause a denial of service by making the GitLab instance unresponsive due to improper input validation in GraphQL request processing.

CVSS3: 7.5
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-3857

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 8.1
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-3857

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an unauthenticated user to execute arbitrary GraphQL mutations on behalf of authenticated users due to insufficient CSRF protection.

CVSS3: 8.1
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-2995

GitLab has remediated an issue in GitLab EE affecting all versions from 15.4 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an authenticated user to add email addresses to targeted user accounts due to improper sanitization of HTML content.

CVSS3: 7.7
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-2995

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 7.7
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-2973

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.7 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an authenticated user to execute arbitrary JavaScript in a user's browser due to improper sanitization of entity-encoded content in Mermaid diagrams.

CVSS3: 5.4
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-2973

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 5.4
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-2745

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 7.11 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 that could have allowed an unauthenticated user to bypass WebAuthn two-factor authentication and gain unauthorized access to user accounts due to inconsistent input validation in the authentication process.

CVSS3: 6.8
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-2745

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 6.8
0%
Низкий
4 месяца назад

Уязвимостей на страницу


Поделиться