Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 17.0.8 | 17.0.8 | ||
| 17.0.7 | 17.0.7 | ||
| 17.0.6 | 17.0.6 | ||
| 17.0.5 | 17.0.5 | ||
| 17.0.4 | 17.0.4 | ||
| 17.0.3 | 17.0.3 | ||
| 17.0.2 | 17.0.2 | ||
| 17.0.1 | 17.0.1 | ||
| 17.0.0 | 17.0.0 |
Показывать по
Количество 5 920
CVE-2019-19314
GitLab EE 8.4 through 12.5, 12.4.3, and 12.3.6 stored several tokens in plaintext.
CVE-2019-19629
In GitLab EE 10.5 through 12.5.3, 12.4.5, and 12.3.8, when transferring a public project to a private group, private code would be disclosed via the Group Search API provided by the Elasticsearch integration.
CVE-2019-19313
GitLab EE 12.3 through 12.5, 12.4.3, and 12.3.6 allows Denial of Service. Certain characters were making it impossible to create, edit, or view issues and commits.
CVE-2019-19628
In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions.
CVE-2019-19310
GitLab Enterprise Edition (EE) 9.0 and later through 12.5 allows Information Disclosure.
CVE-2019-19310
GitLab Enterprise Edition (EE) 9.0 and later through 12.5 allows Infor ...
CVE-2019-19309
GitLab Enterprise Edition (EE) 8.90 and later through 12.5 has Incorrect Access Control.
CVE-2019-19309
GitLab Enterprise Edition (EE) 8.90 and later through 12.5 has Incorre ...
CVE-2019-19263
GitLab Enterprise Edition (EE) 8.2 and later through 12.5 has Insecure Permissions.
CVE-2019-19263
GitLab Enterprise Edition (EE) 8.2 and later through 12.5 has Insecure ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2019-19314 GitLab EE 8.4 through 12.5, 12.4.3, and 12.3.6 stored several tokens in plaintext. | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-19629 In GitLab EE 10.5 through 12.5.3, 12.4.5, and 12.3.8, when transferring a public project to a private group, private code would be disclosed via the Group Search API provided by the Elasticsearch integration. | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-19313 GitLab EE 12.3 through 12.5, 12.4.3, and 12.3.6 allows Denial of Service. Certain characters were making it impossible to create, edit, or view issues and commits. | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-19628 In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions. | CVSS3: 9.8 | 4% Низкий | больше 6 лет назад | |
CVE-2019-19310 GitLab Enterprise Edition (EE) 9.0 and later through 12.5 allows Information Disclosure. | CVSS3: 4.9 | 1% Низкий | больше 6 лет назад | |
CVE-2019-19310 GitLab Enterprise Edition (EE) 9.0 and later through 12.5 allows Infor ... | CVSS3: 4.9 | 1% Низкий | больше 6 лет назад | |
CVE-2019-19309 GitLab Enterprise Edition (EE) 8.90 and later through 12.5 has Incorrect Access Control. | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-19309 GitLab Enterprise Edition (EE) 8.90 and later through 12.5 has Incorre ... | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-19263 GitLab Enterprise Edition (EE) 8.2 and later through 12.5 has Insecure Permissions. | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-19263 GitLab Enterprise Edition (EE) 8.2 and later through 12.5 has Insecure ... | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад |
Уязвимостей на страницу