Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 545

Количество 5 545

ubuntu логотип

CVE-2023-4630

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 10.6 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 in which any user can read limited information about any project's imports.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2023-4630

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 10.6 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 in which any user can read limited information about any project's imports.

CVSS3: 5
EPSS: Низкий
debian логотип

CVE-2023-4630

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 5
EPSS: Низкий
ubuntu логотип

CVE-2023-4532

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. Users were capable of linking CI/CD jobs of private projects which they are not a member of.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-4532

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. Users were capable of linking CI/CD jobs of private projects which they are not a member of.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-4532

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2023-4522

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions before 16.2.0. Committing directories containing LF character results in 500 errors when viewing the commit.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-4522

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions before 16.2.0. Committing directories containing LF character results in 500 errors when viewing the commit.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-4522

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions before 1 ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-4379

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions starting from 15.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1. Code owner approval was not removed from merge requests when the target branch was updated.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2023-4379

больше 2 лет назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 8.1
EPSS: Низкий
ubuntu логотип

CVE-2023-4378

больше 2 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.8 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. A malicious Maintainer can, under specific circumstances, leak the sentry token by changing the configured URL in the Sentry error tracking settings page. This was as a result of an incomplete fix for CVE-2022-4365.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2023-4378

больше 2 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.8 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. A malicious Maintainer can, under specific circumstances, leak the sentry token by changing the configured URL in the Sentry error tracking settings page. This was as a result of an incomplete fix for CVE-2022-4365.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2023-4378

больше 2 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions st ...

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2023-4317

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 9.2 before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1. It was possible for a user with the Developer role to update a pipeline schedule from an unprotected branch to a protected branch.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-4317

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 9.2 before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1. It was possible for a user with the Developer role to update a pipeline schedule from an unprotected branch to a protected branch.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-4317

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2023-4018

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-4018

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-4018

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-4630

An issue has been discovered in GitLab affecting all versions starting from 10.6 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 in which any user can read limited information about any project's imports.

CVSS3: 5
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-4630

An issue has been discovered in GitLab affecting all versions starting from 10.6 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 in which any user can read limited information about any project's imports.

CVSS3: 5
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-4630

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 5
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-4532

An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. Users were capable of linking CI/CD jobs of private projects which they are not a member of.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-4532

An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. Users were capable of linking CI/CD jobs of private projects which they are not a member of.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-4532

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-4522

An issue has been discovered in GitLab affecting all versions before 16.2.0. Committing directories containing LF character results in 500 errors when viewing the commit.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-4522

An issue has been discovered in GitLab affecting all versions before 16.2.0. Committing directories containing LF character results in 500 errors when viewing the commit.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-4522

An issue has been discovered in GitLab affecting all versions before 1 ...

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-4379

An issue has been discovered in GitLab EE affecting all versions starting from 15.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1. Code owner approval was not removed from merge requests when the target branch was updated.

CVSS3: 8.1
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-4379

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 8.1
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-4378

An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.8 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. A malicious Maintainer can, under specific circumstances, leak the sentry token by changing the configured URL in the Sentry error tracking settings page. This was as a result of an incomplete fix for CVE-2022-4365.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-4378

An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.8 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. A malicious Maintainer can, under specific circumstances, leak the sentry token by changing the configured URL in the Sentry error tracking settings page. This was as a result of an incomplete fix for CVE-2022-4365.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-4378

An issue has been discovered in GitLab CE/EE affecting all versions st ...

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-4317

An issue has been discovered in GitLab affecting all versions starting from 9.2 before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1. It was possible for a user with the Developer role to update a pipeline schedule from an unprotected branch to a protected branch.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-4317

An issue has been discovered in GitLab affecting all versions starting from 9.2 before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1. It was possible for a user with the Developer role to update a pipeline schedule from an unprotected branch to a protected branch.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-4317

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-4018

An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-4018

An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to create model experiments in public projects.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-4018

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу