Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 17.0.8 | 17.0.8 | ||
| 17.0.7 | 17.0.7 | ||
| 17.0.6 | 17.0.6 | ||
| 17.0.5 | 17.0.5 | ||
| 17.0.4 | 17.0.4 | ||
| 17.0.3 | 17.0.3 | ||
| 17.0.2 | 17.0.2 | ||
| 17.0.1 | 17.0.1 | ||
| 17.0.0 | 17.0.0 |
Показывать по
Количество 5 943
CVE-2021-39931
An issue has been discovered in GitLab CE/EE affecting all versions st ...
CVE-2021-39930
Missing authorization in GitLab EE versions between 12.4 and 14.3.6, between 14.4.0 and 14.4.4, and between 14.5.0 and 14.5.2 allowed an attacker to access a user's custom project and group templates
CVE-2021-39930
Missing authorization in GitLab EE versions between 12.4 and 14.3.6, b ...
CVE-2021-39919
In all versions of GitLab CE/EE starting version 14.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, the reset password token and new user email token are accidentally logged which may lead to information disclosure.
CVE-2021-39919
In all versions of GitLab CE/EE starting version 14.0 before 14.3.6, a ...
CVE-2021-39918
Incorrect Authorization in GitLab EE affecting all versions starting from 11.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, allows a user to add comments to a vulnerability which cannot be accessed.
CVE-2021-39918
Incorrect Authorization in GitLab EE affecting all versions starting f ...
CVE-2021-39917
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.9 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2. A regular expression related to quick actions features was susceptible to catastrophic backtracking that could cause a DOS attack.
CVE-2021-39917
An issue has been discovered in GitLab CE/EE affecting all versions st ...
CVE-2021-39916
Lack of an access control check in the External Status Check feature allowed any authenticated user to retrieve the configuration of any External Status Check in GitLab EE starting from 14.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2021-39931 An issue has been discovered in GitLab CE/EE affecting all versions st ... | CVSS3: 3.1 | 1% Низкий | больше 4 лет назад | |
CVE-2021-39930 Missing authorization in GitLab EE versions between 12.4 and 14.3.6, between 14.4.0 and 14.4.4, and between 14.5.0 and 14.5.2 allowed an attacker to access a user's custom project and group templates | CVSS3: 4.3 | 1% Низкий | больше 4 лет назад | |
CVE-2021-39930 Missing authorization in GitLab EE versions between 12.4 and 14.3.6, b ... | CVSS3: 4.3 | 1% Низкий | больше 4 лет назад | |
CVE-2021-39919 In all versions of GitLab CE/EE starting version 14.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, the reset password token and new user email token are accidentally logged which may lead to information disclosure. | CVSS3: 4.4 | 0% Низкий | больше 4 лет назад | |
CVE-2021-39919 In all versions of GitLab CE/EE starting version 14.0 before 14.3.6, a ... | CVSS3: 4.4 | 0% Низкий | больше 4 лет назад | |
CVE-2021-39918 Incorrect Authorization in GitLab EE affecting all versions starting from 11.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, allows a user to add comments to a vulnerability which cannot be accessed. | CVSS3: 3.1 | 1% Низкий | больше 4 лет назад | |
CVE-2021-39918 Incorrect Authorization in GitLab EE affecting all versions starting f ... | CVSS3: 3.1 | 1% Низкий | больше 4 лет назад | |
CVE-2021-39917 An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.9 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2. A regular expression related to quick actions features was susceptible to catastrophic backtracking that could cause a DOS attack. | CVSS3: 4.3 | 1% Низкий | больше 4 лет назад | |
CVE-2021-39917 An issue has been discovered in GitLab CE/EE affecting all versions st ... | CVSS3: 4.3 | 1% Низкий | больше 4 лет назад | |
CVE-2021-39916 Lack of an access control check in the External Status Check feature allowed any authenticated user to retrieve the configuration of any External Status Check in GitLab EE starting from 14.1 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2. | CVSS3: 4.3 | 1% Низкий | больше 4 лет назад |
Уязвимостей на страницу