Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 871

debian логотип

CVE-2020-10535

больше 6 лет назад

GitLab 12.8.x before 12.8.6, when sign-up is enabled, allows remote at ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2020-10535

больше 6 лет назад

GitLab 12.8.x before 12.8.6, when sign-up is enabled, allows remote attackers to bypass email domain restrictions within the two-day grace period for an unconfirmed email address.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2019-13121

больше 6 лет назад

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0.2. The GitHub project integration was vulnerable to an SSRF vulnerability which allowed an attacker to make requests to local network resources. It has Incorrect Access Control.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-13121

больше 6 лет назад

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0 ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-13011

больше 6 лет назад

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2019-13011

больше 6 лет назад

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12 ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2019-13010

больше 6 лет назад

An issue was discovered in GitLab Enterprise Edition 8.3 through 12.0.2. The color codes decoder was vulnerable to a resource depletion attack if specific formats were used. It allows Uncontrolled Resource Consumption.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2019-13010

больше 6 лет назад

An issue was discovered in GitLab Enterprise Edition 8.3 through 12.0. ...

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2019-13009

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 9.2 through 12.0.2. Uploaded files associated with unsaved personal snippets were accessible to unauthorized users due to improper permission settings. It has Incorrect Access Control.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2019-13009

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 9.2 ...

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2020-10535

GitLab 12.8.x before 12.8.6, when sign-up is enabled, allows remote at ...

CVSS3: 5.3
1%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2020-10535

GitLab 12.8.x before 12.8.6, when sign-up is enabled, allows remote attackers to bypass email domain restrictions within the two-day grace period for an unconfirmed email address.

CVSS3: 5.3
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-13121

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0.2. The GitHub project integration was vulnerable to an SSRF vulnerability which allowed an attacker to make requests to local network resources. It has Incorrect Access Control.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-13121

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0 ...

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-13011

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

CVSS3: 4.3
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-13011

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12 ...

CVSS3: 4.3
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-13010

An issue was discovered in GitLab Enterprise Edition 8.3 through 12.0.2. The color codes decoder was vulnerable to a resource depletion attack if specific formats were used. It allows Uncontrolled Resource Consumption.

CVSS3: 5.9
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-13010

An issue was discovered in GitLab Enterprise Edition 8.3 through 12.0. ...

CVSS3: 5.9
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-13009

An issue was discovered in GitLab Community and Enterprise Edition 9.2 through 12.0.2. Uploaded files associated with unsaved personal snippets were accessible to unauthorized users due to improper permission settings. It has Incorrect Access Control.

CVSS3: 6.5
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-13009

An issue was discovered in GitLab Community and Enterprise Edition 9.2 ...

CVSS3: 6.5
1%
Низкий
больше 6 лет назад

Уязвимостей на страницу


Поделиться