Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Количество 5 237
CVE-2019-10108
An Incorrect Access Control (issue 1 of 2) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. It allowed non-members of a private project/group to add and read labels.
CVE-2019-10640
An issue was discovered in GitLab Community and Enterprise Edition before 11.7.10, 11.8.x before 11.8.6, and 11.9.x before 11.9.4. A regex input validation issue for the .gitlab-ci.yml refs value allows Uncontrolled Resource Consumption.
CVE-2019-10640
An issue was discovered in GitLab Community and Enterprise Edition bef ...
CVE-2019-10640
An issue was discovered in GitLab Community and Enterprise Edition before 11.7.10, 11.8.x before 11.8.6, and 11.9.x before 11.9.4. A regex input validation issue for the .gitlab-ci.yml refs value allows Uncontrolled Resource Consumption.
CVE-2019-11000
An issue was discovered in GitLab Enterprise Edition before 11.7.11, 11.8.x before 11.8.7, and 11.9.x before 11.9.7. It allows Information Disclosure.
CVE-2019-11000
An issue was discovered in GitLab Enterprise Edition before 11.7.11, 1 ...
CVE-2019-11000
An issue was discovered in GitLab Enterprise Edition before 11.7.11, 11.8.x before 11.8.7, and 11.9.x before 11.9.7. It allows Information Disclosure.
CVE-2018-19359
GitLab Community and Enterprise Edition 8.9 and later and before 11.5.0-rc12, 11.4.6, and 11.3.10 has Incorrect Access Control.
CVE-2018-19359
GitLab Community and Enterprise Edition 8.9 and later and before 11.5. ...
CVE-2018-18643
GitLab CE & EE 11.2 and later and before 11.5.0-rc12, 11.4.6, and 11.3.10 have Persistent XSS.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2019-10108 An Incorrect Access Control (issue 1 of 2) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. It allowed non-members of a private project/group to add and read labels. | CVSS3: 5.4 | 0% Низкий | больше 6 лет назад | |
CVE-2019-10640 An issue was discovered in GitLab Community and Enterprise Edition before 11.7.10, 11.8.x before 11.8.6, and 11.9.x before 11.9.4. A regex input validation issue for the .gitlab-ci.yml refs value allows Uncontrolled Resource Consumption. | CVSS3: 7.5 | 0% Низкий | больше 6 лет назад | |
CVE-2019-10640 An issue was discovered in GitLab Community and Enterprise Edition bef ... | CVSS3: 7.5 | 0% Низкий | больше 6 лет назад | |
CVE-2019-10640 An issue was discovered in GitLab Community and Enterprise Edition before 11.7.10, 11.8.x before 11.8.6, and 11.9.x before 11.9.4. A regex input validation issue for the .gitlab-ci.yml refs value allows Uncontrolled Resource Consumption. | CVSS3: 7.5 | 0% Низкий | больше 6 лет назад | |
CVE-2019-11000 An issue was discovered in GitLab Enterprise Edition before 11.7.11, 11.8.x before 11.8.7, and 11.9.x before 11.9.7. It allows Information Disclosure. | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-11000 An issue was discovered in GitLab Enterprise Edition before 11.7.11, 1 ... | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-11000 An issue was discovered in GitLab Enterprise Edition before 11.7.11, 11.8.x before 11.8.7, and 11.9.x before 11.9.7. It allows Information Disclosure. | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2018-19359 GitLab Community and Enterprise Edition 8.9 and later and before 11.5.0-rc12, 11.4.6, and 11.3.10 has Incorrect Access Control. | CVSS3: 8.8 | 0% Низкий | больше 6 лет назад | |
CVE-2018-19359 GitLab Community and Enterprise Edition 8.9 and later and before 11.5. ... | CVSS3: 8.8 | 0% Низкий | больше 6 лет назад | |
CVE-2018-18643 GitLab CE & EE 11.2 and later and before 11.5.0-rc12, 11.4.6, and 11.3.10 have Persistent XSS. | CVSS3: 6.1 | 0% Низкий | больше 6 лет назад |
Уязвимостей на страницу