Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"
Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

18.618.718.8202520262027

Недавние уязвимости Gitlab

Количество 5 332

ubuntu логотип

CVE-2018-8971

почти 8 лет назад

The Auth0 integration in GitLab before 10.3.9, 10.4.x before 10.4.6, and 10.5.x before 10.5.6 has an incorrect omniauth-auth0 configuration, leading to signing in unintended users.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2017-0920

почти 8 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2017-0920

почти 8 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2017-0920

почти 8 лет назад

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2018-3710

почти 8 лет назад

Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable to an Insecure Temporary File in the project import component resulting remote code execution.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2018-3710

почти 8 лет назад

Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable ...

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2017-0927

почти 8 лет назад

Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the deployment keys component resulting in unauthorized use of deployment keys by guest users.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2017-0927

почти 8 лет назад

Gitlab Community Edition version 10.3 is vulnerable to an improper aut ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2017-0926

почти 8 лет назад

Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2017-0926

почти 8 лет назад

Gitlab Community Edition version 10.3 is vulnerable to an improper aut ...

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2018-8971

The Auth0 integration in GitLab before 10.3.9, 10.4.x before 10.4.6, and 10.5.x before 10.5.6 has an incorrect omniauth-auth0 configuration, leading to signing in unintended users.

CVSS3: 9.8
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2017-0920

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-0920

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10 ...

CVSS3: 4.3
0%
Низкий
почти 8 лет назад
ubuntu логотип
CVE-2017-0920

GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

CVSS3: 4.3
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2018-3710

Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable to an Insecure Temporary File in the project import component resulting remote code execution.

CVSS3: 7.8
3%
Низкий
почти 8 лет назад
debian логотип
CVE-2018-3710

Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable ...

CVSS3: 7.8
3%
Низкий
почти 8 лет назад
nvd логотип
CVE-2017-0927

Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the deployment keys component resulting in unauthorized use of deployment keys by guest users.

CVSS3: 6.5
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-0927

Gitlab Community Edition version 10.3 is vulnerable to an improper aut ...

CVSS3: 6.5
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2017-0926

Gitlab Community Edition version 10.3 is vulnerable to an improper authorization issue in the Oauth sign-in component resulting in unauthorized user login.

CVSS3: 8.8
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-0926

Gitlab Community Edition version 10.3 is vulnerable to an improper aut ...

CVSS3: 8.8
0%
Низкий
почти 8 лет назад

Уязвимостей на страницу


Поделиться