Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"
Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

18.618.718.8202520262027

Недавние уязвимости Gitlab

Количество 5 331

nvd логотип

CVE-2019-7155

почти 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 9.x, 10.x, and 11.x before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It has Incorrect Access Control. A user retains their role within a project in a private group after being removed from the group, if their privileges within the project are different from the group.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2019-7155

почти 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 9.x ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2019-7155

почти 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 9.x, 10.x, and 11.x before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It has Incorrect Access Control. A user retains their role within a project in a private group after being removed from the group, if their privileges within the project are different from the group.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2019-6796

почти 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows XSS (issue 2 of 2). The user status field contains a lack of input validation and output encoding that results in a persistent XSS.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2019-6796

почти 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2019-6796

почти 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows XSS (issue 2 of 2). The user status field contains a lack of input validation and output encoding that results in a persistent XSS.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2018-20229

почти 7 лет назад

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-20229

почти 7 лет назад

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2018-20229

почти 7 лет назад

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-20144

почти 7 лет назад

GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x before 11.4.11, and 11.5.x before 11.5.4 has Incorrect Access Control.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2019-7155

An issue was discovered in GitLab Community and Enterprise Edition 9.x, 10.x, and 11.x before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It has Incorrect Access Control. A user retains their role within a project in a private group after being removed from the group, if their privileges within the project are different from the group.

CVSS3: 6.5
0%
Низкий
почти 7 лет назад
debian логотип
CVE-2019-7155

An issue was discovered in GitLab Community and Enterprise Edition 9.x ...

CVSS3: 6.5
0%
Низкий
почти 7 лет назад
ubuntu логотип
CVE-2019-7155

An issue was discovered in GitLab Community and Enterprise Edition 9.x, 10.x, and 11.x before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It has Incorrect Access Control. A user retains their role within a project in a private group after being removed from the group, if their privileges within the project are different from the group.

CVSS3: 6.5
0%
Низкий
почти 7 лет назад
nvd логотип
CVE-2019-6796

An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows XSS (issue 2 of 2). The user status field contains a lack of input validation and output encoding that results in a persistent XSS.

CVSS3: 6.1
0%
Низкий
почти 7 лет назад
debian логотип
CVE-2019-6796

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 6.1
0%
Низкий
почти 7 лет назад
ubuntu логотип
CVE-2019-6796

An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows XSS (issue 2 of 2). The user status field contains a lack of input validation and output encoding that results in a persistent XSS.

CVSS3: 6.1
0%
Низкий
почти 7 лет назад
nvd логотип
CVE-2018-20229

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

CVSS3: 7.5
0%
Низкий
почти 7 лет назад
debian логотип
CVE-2018-20229

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before ...

CVSS3: 7.5
0%
Низкий
почти 7 лет назад
ubuntu логотип
CVE-2018-20229

GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

CVSS3: 7.5
0%
Низкий
почти 7 лет назад
nvd логотип
CVE-2018-20144

GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x before 11.4.11, and 11.5.x before 11.5.4 has Incorrect Access Control.

CVSS3: 7.5
0%
Низкий
почти 7 лет назад

Уязвимостей на страницу


Поделиться