Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 943

debian логотип

CVE-2021-22175

около 5 лет назад

When requests to the internal network for webhooks are enabled, a serv ...

CVSS3: 6.8
EPSS: Средний
ubuntu логотип

CVE-2021-22181

около 5 лет назад

A denial of service vulnerability in GitLab CE/EE affecting all versions since 11.8 allows an attacker to create a recursive pipeline relationship and exhaust resources.

CVSS3: 7.7
EPSS: Низкий
ubuntu логотип

CVE-2021-22175

около 5 лет назад

When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab affecting all versions starting from 10.5 was possible to exploit for an unauthenticated attacker even on a GitLab instance where registration is disabled

CVSS3: 6.8
EPSS: Средний
nvd логотип

CVE-2021-22220

около 5 лет назад

An issue has been discovered in GitLab affecting all versions starting with 13.10. GitLab was vulnerable to a stored XSS in blob viewer of notebooks.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2021-22220

около 5 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2021-22216

около 5 лет назад

A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker to cause uncontrolled resource consumption with a very long issue or merge request description

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2021-22216

около 5 лет назад

A denial of service vulnerability in all versions of GitLab CE/EE befo ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2021-22216

около 5 лет назад

A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker to cause uncontrolled resource consumption with a very long issue or merge request description

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2021-22220

около 5 лет назад

An issue has been discovered in GitLab affecting all versions starting with 13.10. GitLab was vulnerable to a stored XSS in blob viewer of notebooks.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2021-22221

около 5 лет назад

An issue has been discovered in GitLab affecting all versions starting from 12.9.0 before 13.10.5, all versions starting from 13.11.0 before 13.11.5, all versions starting from 13.12.0 before 13.12.2. Insufficient expired password validation in various operations allow user to maintain limited access after their password expired

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2021-22175

When requests to the internal network for webhooks are enabled, a serv ...

CVSS3: 6.8
53%
Средний
около 5 лет назад
ubuntu логотип
CVE-2021-22181

A denial of service vulnerability in GitLab CE/EE affecting all versions since 11.8 allows an attacker to create a recursive pipeline relationship and exhaust resources.

CVSS3: 7.7
1%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2021-22175

When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab affecting all versions starting from 10.5 was possible to exploit for an unauthenticated attacker even on a GitLab instance where registration is disabled

CVSS3: 6.8
53%
Средний
около 5 лет назад
nvd логотип
CVE-2021-22220

An issue has been discovered in GitLab affecting all versions starting with 13.10. GitLab was vulnerable to a stored XSS in blob viewer of notebooks.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
debian логотип
CVE-2021-22220

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 6.1
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2021-22216

A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker to cause uncontrolled resource consumption with a very long issue or merge request description

CVSS3: 6.5
1%
Низкий
около 5 лет назад
debian логотип
CVE-2021-22216

A denial of service vulnerability in all versions of GitLab CE/EE befo ...

CVSS3: 6.5
1%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2021-22216

A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker to cause uncontrolled resource consumption with a very long issue or merge request description

CVSS3: 6.5
1%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2021-22220

An issue has been discovered in GitLab affecting all versions starting with 13.10. GitLab was vulnerable to a stored XSS in blob viewer of notebooks.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2021-22221

An issue has been discovered in GitLab affecting all versions starting from 12.9.0 before 13.10.5, all versions starting from 13.11.0 before 13.11.5, all versions starting from 13.12.0 before 13.12.2. Insufficient expired password validation in various operations allow user to maintain limited access after their password expired

CVSS3: 6.5
1%
Низкий
около 5 лет назад

Уязвимостей на страницу


Поделиться