Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 17.0.8 | 17.0.8 | ||
| 17.0.7 | 17.0.7 | ||
| 17.0.6 | 17.0.6 | ||
| 17.0.5 | 17.0.5 | ||
| 17.0.4 | 17.0.4 | ||
| 17.0.3 | 17.0.3 | ||
| 17.0.2 | 17.0.2 | ||
| 17.0.1 | 17.0.1 | ||
| 17.0.0 | 17.0.0 |
Показывать по
Количество 5 943
CVE-2021-39883
Improper authorization checks in all versions of GitLab EE starting from 13.11 before 14.1.7, all versions starting from 14.2 before 14.2.5, and all versions starting from 14.3 before 14.3.1 allows subgroup members to see epics from all parent subgroups.
CVE-2021-39883
Improper authorization checks in all versions of GitLab EE starting fr ...
CVE-2021-39879
Missing authentication in all versions of GitLab CE/EE since version 7.11.0 allows an attacker with access to a victim's session to disable two-factor authentication
CVE-2021-39879
Missing authentication in all versions of GitLab CE/EE since version 7 ...
CVE-2021-39877
A vulnerability was discovered in GitLab starting with version 12.2 that allows an attacker to cause uncontrolled resource consumption with a specially crafted file.
CVE-2021-39877
A vulnerability was discovered in GitLab starting with version 12.2 th ...
CVE-2021-39874
In all versions of GitLab CE/EE since version 11.0, the requirement to enforce 2FA is not honored when using git commands.
CVE-2021-39874
In all versions of GitLab CE/EE since version 11.0, the requirement to ...
CVE-2021-39873
In all versions of GitLab CE/EE, there exists a content spoofing vulnerability which may be leveraged by attackers to trick users into visiting a malicious website by spoofing the content in an error response.
CVE-2021-39873
In all versions of GitLab CE/EE, there exists a content spoofing vulne ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2021-39883 Improper authorization checks in all versions of GitLab EE starting from 13.11 before 14.1.7, all versions starting from 14.2 before 14.2.5, and all versions starting from 14.3 before 14.3.1 allows subgroup members to see epics from all parent subgroups. | CVSS3: 4.3 | 1% Низкий | почти 5 лет назад | |
CVE-2021-39883 Improper authorization checks in all versions of GitLab EE starting fr ... | CVSS3: 4.3 | 1% Низкий | почти 5 лет назад | |
CVE-2021-39879 Missing authentication in all versions of GitLab CE/EE since version 7.11.0 allows an attacker with access to a victim's session to disable two-factor authentication | CVSS3: 2.2 | 0% Низкий | почти 5 лет назад | |
CVE-2021-39879 Missing authentication in all versions of GitLab CE/EE since version 7 ... | CVSS3: 2.2 | 0% Низкий | почти 5 лет назад | |
CVE-2021-39877 A vulnerability was discovered in GitLab starting with version 12.2 that allows an attacker to cause uncontrolled resource consumption with a specially crafted file. | CVSS3: 7.7 | 1% Низкий | почти 5 лет назад | |
CVE-2021-39877 A vulnerability was discovered in GitLab starting with version 12.2 th ... | CVSS3: 7.7 | 1% Низкий | почти 5 лет назад | |
CVE-2021-39874 In all versions of GitLab CE/EE since version 11.0, the requirement to enforce 2FA is not honored when using git commands. | CVSS3: 4.3 | 1% Низкий | почти 5 лет назад | |
CVE-2021-39874 In all versions of GitLab CE/EE since version 11.0, the requirement to ... | CVSS3: 4.3 | 1% Низкий | почти 5 лет назад | |
CVE-2021-39873 In all versions of GitLab CE/EE, there exists a content spoofing vulnerability which may be leveraged by attackers to trick users into visiting a malicious website by spoofing the content in an error response. | CVSS3: 4.3 | 1% Низкий | почти 5 лет назад | |
CVE-2021-39873 In all versions of GitLab CE/EE, there exists a content spoofing vulne ... | CVSS3: 4.3 | 1% Низкий | почти 5 лет назад |
Уязвимостей на страницу