Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 544

Количество 5 544

nvd логотип

CVE-2025-0194

около 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-0194

около 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2024-9870

около 1 года назад

An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2024-9870

около 1 года назад

An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2024-9870

около 1 года назад

An external service interaction vulnerability in GitLab EE affecting a ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2024-9773

около 1 года назад

An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all versions starting from 17.9 before 17.8.3, all versions starting from 17.10 before 17.10.1. An input validation issue in the Harbor registry integration could have allowed a maintainer to add malicious code to the CLI commands shown in the UI.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2024-9773

около 1 года назад

An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all versions starting from 17.9 before 17.8.3, all versions starting from 17.10 before 17.10.1. An input validation issue in the Harbor registry integration could have allowed a maintainer to add malicious code to the CLI commands shown in the UI.

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2024-9773

около 1 года назад

An issue was discovered in GitLab EE affecting all versions starting f ...

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2024-9693

больше 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have allowed unauthorized access to the Kubernetes agent in a cluster under specific configurations.

CVSS3: 8.5
EPSS: Низкий
nvd логотип

CVE-2024-9693

больше 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have allowed unauthorized access to the Kubernetes agent in a cluster under specific configurations.

CVSS3: 8.5
EPSS: Низкий
debian логотип

CVE-2024-9693

больше 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 8.5
EPSS: Низкий
ubuntu логотип

CVE-2024-9633

больше 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions starting from 17.5 before 17.5.4, all versions starting from 17.6 before 17.6.2. This issue allows an attacker to create a group with a name matching an existing unique Pages domain, potentially leading to domain confusion attacks.

CVSS3: 3.1
EPSS: Низкий
nvd логотип

CVE-2024-9633

больше 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions starting from 17.5 before 17.5.4, all versions starting from 17.6 before 17.6.2. This issue allows an attacker to create a group with a name matching an existing unique Pages domain, potentially leading to domain confusion attacks.

CVSS3: 3.1
EPSS: Низкий
debian логотип

CVE-2024-9633

больше 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions st ...

CVSS3: 3.1
EPSS: Низкий
ubuntu логотип

CVE-2024-9631

около 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, where viewing diffs of MR with conflicts can be slow.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-9631

около 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, where viewing diffs of MR with conflicts can be slow.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-9631

около 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2024-9623

больше 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, which allows deploy keys to push to an archived repository.

CVSS3: 4.9
EPSS: Низкий
nvd логотип

CVE-2024-9623

больше 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, which allows deploy keys to push to an archived repository.

CVSS3: 4.9
EPSS: Низкий
debian логотип

CVE-2024-9623

больше 1 года назад

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-0194

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner.

CVSS3: 6.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-0194

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 6.5
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-9870

An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.

CVSS3: 4.3
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-9870

An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.

CVSS3: 4.3
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-9870

An external service interaction vulnerability in GitLab EE affecting a ...

CVSS3: 4.3
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-9773

An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all versions starting from 17.9 before 17.8.3, all versions starting from 17.10 before 17.10.1. An input validation issue in the Harbor registry integration could have allowed a maintainer to add malicious code to the CLI commands shown in the UI.

CVSS3: 3.7
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-9773

An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all versions starting from 17.9 before 17.8.3, all versions starting from 17.10 before 17.10.1. An input validation issue in the Harbor registry integration could have allowed a maintainer to add malicious code to the CLI commands shown in the UI.

CVSS3: 3.7
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-9773

An issue was discovered in GitLab EE affecting all versions starting f ...

CVSS3: 3.7
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-9693

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have allowed unauthorized access to the Kubernetes agent in a cluster under specific configurations.

CVSS3: 8.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-9693

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.0 prior to 17.3.7, starting from 17.4 prior to 17.4.4, and starting from 17.5 prior to 17.5.2, which could have allowed unauthorized access to the Kubernetes agent in a cluster under specific configurations.

CVSS3: 8.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-9693

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 8.5
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-9633

An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions starting from 17.5 before 17.5.4, all versions starting from 17.6 before 17.6.2. This issue allows an attacker to create a group with a name matching an existing unique Pages domain, potentially leading to domain confusion attacks.

CVSS3: 3.1
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-9633

An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions starting from 17.5 before 17.5.4, all versions starting from 17.6 before 17.6.2. This issue allows an attacker to create a group with a name matching an existing unique Pages domain, potentially leading to domain confusion attacks.

CVSS3: 3.1
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-9633

An issue has been discovered in GitLab CE/EE affecting all versions st ...

CVSS3: 3.1
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-9631

An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, where viewing diffs of MR with conflicts can be slow.

CVSS3: 7.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-9631

An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, where viewing diffs of MR with conflicts can be slow.

CVSS3: 7.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-9631

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 7.5
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-9623

An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, which allows deploy keys to push to an archived repository.

CVSS3: 4.9
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-9623

An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.2.9, starting from 17.3 prior to 17.3.5, and starting from 17.4 prior to 17.4.2, which allows deploy keys to push to an archived repository.

CVSS3: 4.9
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-9623

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 4.9
0%
Низкий
больше 1 года назад

Уязвимостей на страницу