Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 920

ubuntu логотип

CVE-2020-11649

больше 6 лет назад

An issue was discovered in GitLab CE and EE 8.15 through 12.9.2. Members of a group could still have access after the group is deleted.

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2020-11505

больше 6 лет назад

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 12.7.9, 12.8.x before 12.8.9, and 12.9.x before 12.9.3. A Workhorse bypass could lead to NuGet package and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2020-11506

больше 6 лет назад

An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A Workhorse bypass could lead to job artifact uploads and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2020-10981

больше 6 лет назад

GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintainers' pipeline trigger descriptions within the same project.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2020-10981

больше 6 лет назад

GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintaine ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2020-10980

больше 6 лет назад

GitLab EE/CE 8.0.rc1 to 12.9 is vulnerable to a blind SSRF in the FogBugz integration.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2020-10980

больше 6 лет назад

GitLab EE/CE 8.0.rc1 to 12.9 is vulnerable to a blind SSRF in the FogB ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2020-10979

больше 6 лет назад

GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pipelines metrics to unauthorized users.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2020-10979

больше 6 лет назад

GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pip ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2020-10978

больше 6 лет назад

GitLab EE/CE 8.11 to 12.9 is leaking information on Issues opened in a public project and then moved to a private project through Web-UI and GraphQL API.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2020-11649

An issue was discovered in GitLab CE and EE 8.15 through 12.9.2. Members of a group could still have access after the group is deleted.

CVSS3: 6.5
1%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2020-11505

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 12.7.9, 12.8.x before 12.8.9, and 12.9.x before 12.9.3. A Workhorse bypass could lead to NuGet package and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2020-11506

An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A Workhorse bypass could lead to job artifact uploads and file disclosure (Exposure of Sensitive Information) via request smuggling.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2020-10981

GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintainers' pipeline trigger descriptions within the same project.

CVSS3: 4.3
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2020-10981

GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintaine ...

CVSS3: 4.3
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2020-10980

GitLab EE/CE 8.0.rc1 to 12.9 is vulnerable to a blind SSRF in the FogBugz integration.

CVSS3: 9.8
2%
Низкий
больше 6 лет назад
debian логотип
CVE-2020-10980

GitLab EE/CE 8.0.rc1 to 12.9 is vulnerable to a blind SSRF in the FogB ...

CVSS3: 9.8
2%
Низкий
больше 6 лет назад
nvd логотип
CVE-2020-10979

GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pipelines metrics to unauthorized users.

CVSS3: 4.3
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2020-10979

GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pip ...

CVSS3: 4.3
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2020-10978

GitLab EE/CE 8.11 to 12.9 is leaking information on Issues opened in a public project and then moved to a private project through Web-UI and GraphQL API.

CVSS3: 5.3
1%
Низкий
больше 6 лет назад

Уязвимостей на страницу


Поделиться