Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"
Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

18.618.718.8202520262027

Недавние уязвимости Gitlab

Количество 5 336

nvd логотип

CVE-2020-11649

почти 6 лет назад

An issue was discovered in GitLab CE and EE 8.15 through 12.9.2. Members of a group could still have access after the group is deleted.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-11649

почти 6 лет назад

An issue was discovered in GitLab CE and EE 8.15 through 12.9.2. Membe ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-11506

почти 6 лет назад

An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A Workhorse bypass could lead to job artifact uploads and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-11506

почти 6 лет назад

An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A W ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2020-11505

почти 6 лет назад

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 12.7.9, 12.8.x before 12.8.9, and 12.9.x before 12.9.3. A Workhorse bypass could lead to NuGet package and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-11505

почти 6 лет назад

An issue was discovered in GitLab Community Edition (CE) and Enterpris ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2020-11505

почти 6 лет назад

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 12.7.9, 12.8.x before 12.8.9, and 12.9.x before 12.9.3. A Workhorse bypass could lead to NuGet package and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2020-11649

почти 6 лет назад

An issue was discovered in GitLab CE and EE 8.15 through 12.9.2. Members of a group could still have access after the group is deleted.

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2020-11506

почти 6 лет назад

An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A Workhorse bypass could lead to job artifact uploads and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2020-10981

почти 6 лет назад

GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintainers' pipeline trigger descriptions within the same project.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2020-11649

An issue was discovered in GitLab CE and EE 8.15 through 12.9.2. Members of a group could still have access after the group is deleted.

CVSS3: 6.5
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-11649

An issue was discovered in GitLab CE and EE 8.15 through 12.9.2. Membe ...

CVSS3: 6.5
0%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-11506

An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A Workhorse bypass could lead to job artifact uploads and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-11506

An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A W ...

CVSS3: 7.5
0%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-11505

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 12.7.9, 12.8.x before 12.8.9, and 12.9.x before 12.9.3. A Workhorse bypass could lead to NuGet package and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-11505

An issue was discovered in GitLab Community Edition (CE) and Enterpris ...

CVSS3: 7.5
0%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2020-11505

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 12.7.9, 12.8.x before 12.8.9, and 12.9.x before 12.9.3. A Workhorse bypass could lead to NuGet package and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
0%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2020-11649

An issue was discovered in GitLab CE and EE 8.15 through 12.9.2. Members of a group could still have access after the group is deleted.

CVSS3: 6.5
0%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2020-11506

An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A Workhorse bypass could lead to job artifact uploads and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
0%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-10981

GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintainers' pipeline trigger descriptions within the same project.

CVSS3: 4.3
0%
Низкий
почти 6 лет назад

Уязвимостей на страницу


Поделиться