Количество 5 544
Количество 5 544
CVE-2025-0194
An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner.
CVE-2025-0194
An issue was discovered in GitLab CE/EE affecting all versions startin ...
CVE-2024-9870
An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.
CVE-2024-9870
An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.
CVE-2024-9870
An external service interaction vulnerability in GitLab EE affecting a ...
CVE-2024-9773
An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all versions starting from 17.9 before 17.8.3, all versions starting from 17.10 before 17.10.1. An input validation issue in the Harbor registry integration could have allowed a maintainer to add malicious code to the CLI commands shown in the UI.
CVE-2024-9773
An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all versions starting from 17.9 before 17.8.3, all versions starting from 17.10 before 17.10.1. An input validation issue in the Harbor registry integration could have allowed a maintainer to add malicious code to the CLI commands shown in the UI.
CVE-2024-9773
An issue was discovered in GitLab EE affecting all versions starting f ...
CVE-2024-9693
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have allowed unauthorized access to the Kubernetes agent in a cluster under specific configurations.
CVE-2024-9693
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have allowed unauthorized access to the Kubernetes agent in a cluster under specific configurations.
CVE-2024-9693
An issue was discovered in GitLab CE/EE affecting all versions startin ...
CVE-2024-9633
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions starting from 17.5 before 17.5.4, all versions starting from 17.6 before 17.6.2. This issue allows an attacker to create a group with a name matching an existing unique Pages domain, potentially leading to domain confusion attacks.
CVE-2024-9633
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions starting from 17.5 before 17.5.4, all versions starting from 17.6 before 17.6.2. This issue allows an attacker to create a group with a name matching an existing unique Pages domain, potentially leading to domain confusion attacks.
CVE-2024-9633
An issue has been discovered in GitLab CE/EE affecting all versions st ...
CVE-2024-9631
An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, where viewing diffs of MR with conflicts can be slow.
CVE-2024-9631
An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, where viewing diffs of MR with conflicts can be slow.
CVE-2024-9631
An issue was discovered in GitLab CE/EE affecting all versions startin ...
CVE-2024-9623
An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, which allows deploy keys to push to an archived repository.
CVE-2024-9623
An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, which allows deploy keys to push to an archived repository.
CVE-2024-9623
An issue was discovered in GitLab CE/EE affecting all versions startin ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-0194 An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner. | CVSS3: 6.5 | 0% Низкий | около 1 года назад | |
CVE-2025-0194 An issue was discovered in GitLab CE/EE affecting all versions startin ... | CVSS3: 6.5 | 0% Низкий | около 1 года назад | |
CVE-2024-9870 An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services. | CVSS3: 4.3 | 0% Низкий | около 1 года назад | |
CVE-2024-9870 An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services. | CVSS3: 4.3 | 0% Низкий | около 1 года назад | |
CVE-2024-9870 An external service interaction vulnerability in GitLab EE affecting a ... | CVSS3: 4.3 | 0% Низкий | около 1 года назад | |
CVE-2024-9773 An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all versions starting from 17.9 before 17.8.3, all versions starting from 17.10 before 17.10.1. An input validation issue in the Harbor registry integration could have allowed a maintainer to add malicious code to the CLI commands shown in the UI. | CVSS3: 3.7 | 0% Низкий | около 1 года назад | |
CVE-2024-9773 An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all versions starting from 17.9 before 17.8.3, all versions starting from 17.10 before 17.10.1. An input validation issue in the Harbor registry integration could have allowed a maintainer to add malicious code to the CLI commands shown in the UI. | CVSS3: 3.7 | 0% Низкий | около 1 года назад | |
CVE-2024-9773 An issue was discovered in GitLab EE affecting all versions starting f ... | CVSS3: 3.7 | 0% Низкий | около 1 года назад | |
CVE-2024-9693 An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have allowed unauthorized access to the Kubernetes agent in a cluster under specific configurations. | CVSS3: 8.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-9693 An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have allowed unauthorized access to the Kubernetes agent in a cluster under specific configurations. | CVSS3: 8.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-9693 An issue was discovered in GitLab CE/EE affecting all versions startin ... | CVSS3: 8.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-9633 An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions starting from 17.5 before 17.5.4, all versions starting from 17.6 before 17.6.2. This issue allows an attacker to create a group with a name matching an existing unique Pages domain, potentially leading to domain confusion attacks. | CVSS3: 3.1 | 0% Низкий | больше 1 года назад | |
CVE-2024-9633 An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions starting from 17.5 before 17.5.4, all versions starting from 17.6 before 17.6.2. This issue allows an attacker to create a group with a name matching an existing unique Pages domain, potentially leading to domain confusion attacks. | CVSS3: 3.1 | 0% Низкий | больше 1 года назад | |
CVE-2024-9633 An issue has been discovered in GitLab CE/EE affecting all versions st ... | CVSS3: 3.1 | 0% Низкий | больше 1 года назад | |
CVE-2024-9631 An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, where viewing diffs of MR with conflicts can be slow. | CVSS3: 7.5 | 0% Низкий | около 1 года назад | |
CVE-2024-9631 An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, where viewing diffs of MR with conflicts can be slow. | CVSS3: 7.5 | 0% Низкий | около 1 года назад | |
CVE-2024-9631 An issue was discovered in GitLab CE/EE affecting all versions startin ... | CVSS3: 7.5 | 0% Низкий | около 1 года назад | |
CVE-2024-9623 An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, which allows deploy keys to push to an archived repository. | CVSS3: 4.9 | 0% Низкий | больше 1 года назад | |
CVE-2024-9623 An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, which allows deploy keys to push to an archived repository. | CVSS3: 4.9 | 0% Низкий | больше 1 года назад | |
CVE-2024-9623 An issue was discovered in GitLab CE/EE affecting all versions startin ... | CVSS3: 4.9 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу