Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 920

nvd логотип

CVE-2026-1282

6 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that could have allowed an authenticated user to inject malicious content into project labels titles.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2026-1282

6 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 3.5
EPSS: Низкий
nvd логотип

CVE-2026-1094

6 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.8 before 18.8.4 that could have allowed an authenticated developer to hide specially crafted file changes from the WebUI.

CVSS3: 4.6
EPSS: Низкий
debian логотип

CVE-2026-1094

6 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 4.6
EPSS: Низкий
nvd логотип

CVE-2026-1080

6 месяцев назад

GitLab has remediated an issue in GitLab EE affecting all versions from 16.7 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to access iteration data from private descendant groups by querying the iterations API endpoint.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2026-1080

6 месяцев назад

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2026-0958

6 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that could have allowed an unauthenticated user to cause denial of service through memory or CPU exhaustion by bypassing JSON validation middleware limits.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-0958

6 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-0595

6 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.9 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to add unauthorized email addresses to victim accounts through HTML injection in test case titles.

CVSS3: 7.3
EPSS: Низкий
debian логотип

CVE-2026-0595

6 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2026-1282

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that could have allowed an authenticated user to inject malicious content into project labels titles.

CVSS3: 3.5
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-1282

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 3.5
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-1094

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.8 before 18.8.4 that could have allowed an authenticated developer to hide specially crafted file changes from the WebUI.

CVSS3: 4.6
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-1094

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 4.6
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-1080

GitLab has remediated an issue in GitLab EE affecting all versions from 16.7 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to access iteration data from private descendant groups by querying the iterations API endpoint.

CVSS3: 4.3
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-1080

GitLab has remediated an issue in GitLab EE affecting all versions fro ...

CVSS3: 4.3
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-0958

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that could have allowed an unauthenticated user to cause denial of service through memory or CPU exhaustion by bypassing JSON validation middleware limits.

CVSS3: 7.5
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-0958

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.5
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-0595

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.9 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to add unauthorized email addresses to victim accounts through HTML injection in test case titles.

CVSS3: 7.3
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-0595

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 7.3
0%
Низкий
6 месяцев назад

Уязвимостей на страницу


Поделиться