Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Количество 5 336
CVE-2019-6960
An issue was discovered in GitLab Community and Enterprise Edition 9.x ...
CVE-2019-6795
An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It has Insufficient Visual Distinction of Homoglyphs Presented to a User. IDN homographs and RTLO characters are rendered to unicode, which could be used for social engineering.
CVE-2019-6795
An issue was discovered in GitLab Community and Enterprise Edition bef ...
CVE-2019-6794
An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows Information Disclosure (issue 5 of 6). A project guest user can view the last commit status of the default branch.
CVE-2019-6794
An issue was discovered in GitLab Community and Enterprise Edition bef ...
CVE-2019-6793
An issue was discovered in GitLab Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. The Jira integration feature is vulnerable to an unauthenticated blind SSRF issue.
CVE-2019-6793
An issue was discovered in GitLab Enterprise Edition before 11.5.8, 11 ...
CVE-2019-6792
An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows Path Disclosure. When an error is encountered on project import, the error message will display instance internal information.
CVE-2019-6792
An issue was discovered in GitLab Community and Enterprise Edition bef ...
CVE-2019-6789
An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows Information Disclosure (issue 4 of 6). In some cases, users without project permissions will receive emails after a project move. For private projects, this will disclose the new project namespace to an unauthorized user.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2019-6960 An issue was discovered in GitLab Community and Enterprise Edition 9.x ... | CVSS3: 9.8 | 1% Низкий | больше 6 лет назад | |
CVE-2019-6795 An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It has Insufficient Visual Distinction of Homoglyphs Presented to a User. IDN homographs and RTLO characters are rendered to unicode, which could be used for social engineering. | CVSS3: 5.4 | 0% Низкий | больше 6 лет назад | |
CVE-2019-6795 An issue was discovered in GitLab Community and Enterprise Edition bef ... | CVSS3: 5.4 | 0% Низкий | больше 6 лет назад | |
CVE-2019-6794 An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows Information Disclosure (issue 5 of 6). A project guest user can view the last commit status of the default branch. | CVSS3: 4.3 | 0% Низкий | больше 6 лет назад | |
CVE-2019-6794 An issue was discovered in GitLab Community and Enterprise Edition bef ... | CVSS3: 4.3 | 0% Низкий | больше 6 лет назад | |
CVE-2019-6793 An issue was discovered in GitLab Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. The Jira integration feature is vulnerable to an unauthenticated blind SSRF issue. | CVSS3: 7 | 4% Низкий | больше 6 лет назад | |
CVE-2019-6793 An issue was discovered in GitLab Enterprise Edition before 11.5.8, 11 ... | CVSS3: 7 | 4% Низкий | больше 6 лет назад | |
CVE-2019-6792 An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows Path Disclosure. When an error is encountered on project import, the error message will display instance internal information. | CVSS3: 5.3 | 0% Низкий | больше 6 лет назад | |
CVE-2019-6792 An issue was discovered in GitLab Community and Enterprise Edition bef ... | CVSS3: 5.3 | 0% Низкий | больше 6 лет назад | |
CVE-2019-6789 An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows Information Disclosure (issue 4 of 6). In some cases, users without project permissions will receive emails after a project move. For private projects, this will disclose the new project namespace to an unauthorized user. | CVSS3: 4.3 | 0% Низкий | больше 6 лет назад |
Уязвимостей на страницу