Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 545

Количество 5 545

ubuntu логотип

CVE-2023-1733

около 3 лет назад

A denial of service condition exists in the Prometheus server bundled with GitLab affecting all versions from 11.10 to 15.8.5, 15.9 to 15.9.4 and 15.10 to 15.10.1.

CVSS3: 5.8
EPSS: Низкий
nvd логотип

CVE-2023-1733

около 3 лет назад

A denial of service condition exists in the Prometheus server bundled with GitLab affecting all versions from 11.10 to 15.8.5, 15.9 to 15.9.4 and 15.10 to 15.10.1.

CVSS3: 5.8
EPSS: Низкий
debian логотип

CVE-2023-1733

около 3 лет назад

A denial of service condition exists in the Prometheus server bundled ...

CVSS3: 5.8
EPSS: Низкий
ubuntu логотип

CVE-2023-1710

около 3 лет назад

A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 prior to 15.10.1 allows an attacker to view the count of internal notes for a given issue.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-1710

около 3 лет назад

A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 prior to 15.10.1 allows an attacker to view the count of internal notes for a given issue.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-1710

около 3 лет назад

A sensitive information disclosure vulnerability in GitLab affecting a ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2023-1708

около 3 лет назад

An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9 prior to 15.9.4, and 15.10 prior to 15.10.1 where non-printable characters gets copied from clipboard, allowing unexpected commands to be executed on victim machine.

CVSS3: 5.7
EPSS: Низкий
nvd логотип

CVE-2023-1708

около 3 лет назад

An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9 prior to 15.9.4, and 15.10 prior to 15.10.1 where non-printable characters gets copied from clipboard, allowing unexpected commands to be executed on victim machine.

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2023-1708

около 3 лет назад

An issue was identified in GitLab CE/EE affecting all versions from 1. ...

CVSS3: 5.7
EPSS: Низкий
nvd логотип

CVE-2023-1621

почти 3 года назад

An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to commit to projects even from a restricted IP address.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-1621

почти 3 года назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2023-1555

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.2 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. A namespace-level banned user can access the API.

CVSS3: 2.7
EPSS: Низкий
nvd логотип

CVE-2023-1555

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.2 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. A namespace-level banned user can access the API.

CVSS3: 2.7
EPSS: Низкий
debian логотип

CVE-2023-1555

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 2.7
EPSS: Низкий
ubuntu логотип

CVE-2023-1417

около 3 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. It was possible for an unauthorised user to add child epics linked to victim's epic in an unrelated group.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-1417

около 3 лет назад

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. It was possible for an unauthorised user to add child epics linked to victim's epic in an unrelated group.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-1417

около 3 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-1401

больше 2 лет назад

An issue has been discovered in GitLab DAST scanner affecting all versions starting from 3.0.29 before 4.0.5, in which the DAST scanner leak cross site cookies on redirect during authorization.

CVSS3: 5
EPSS: Низкий
ubuntu логотип

CVE-2023-1279

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 4.1 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 where it was possible to create a URL that would redirect to a different project.

CVSS3: 2.6
EPSS: Низкий
nvd логотип

CVE-2023-1279

больше 2 лет назад

An issue has been discovered in GitLab affecting all versions starting from 4.1 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 where it was possible to create a URL that would redirect to a different project.

CVSS3: 2.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-1733

A denial of service condition exists in the Prometheus server bundled with GitLab affecting all versions from 11.10 to 15.8.5, 15.9 to 15.9.4 and 15.10 to 15.10.1.

CVSS3: 5.8
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-1733

A denial of service condition exists in the Prometheus server bundled with GitLab affecting all versions from 11.10 to 15.8.5, 15.9 to 15.9.4 and 15.10 to 15.10.1.

CVSS3: 5.8
1%
Низкий
около 3 лет назад
debian логотип
CVE-2023-1733

A denial of service condition exists in the Prometheus server bundled ...

CVSS3: 5.8
1%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2023-1710

A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 prior to 15.10.1 allows an attacker to view the count of internal notes for a given issue.

CVSS3: 5.3
3%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-1710

A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior to 15.9.4 and 15.10 prior to 15.10.1 allows an attacker to view the count of internal notes for a given issue.

CVSS3: 5.3
3%
Низкий
около 3 лет назад
debian логотип
CVE-2023-1710

A sensitive information disclosure vulnerability in GitLab affecting a ...

CVSS3: 5.3
3%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2023-1708

An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9 prior to 15.9.4, and 15.10 prior to 15.10.1 where non-printable characters gets copied from clipboard, allowing unexpected commands to be executed on victim machine.

CVSS3: 5.7
6%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-1708

An issue was identified in GitLab CE/EE affecting all versions from 1.0 prior to 15.8.5, 15.9 prior to 15.9.4, and 15.10 prior to 15.10.1 where non-printable characters gets copied from clipboard, allowing unexpected commands to be executed on victim machine.

CVSS3: 5.7
6%
Низкий
около 3 лет назад
debian логотип
CVE-2023-1708

An issue was identified in GitLab CE/EE affecting all versions from 1. ...

CVSS3: 5.7
6%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-1621

An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to commit to projects even from a restricted IP address.

CVSS3: 6.5
1%
Низкий
почти 3 года назад
debian логотип
CVE-2023-1621

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 6.5
1%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2023-1555

An issue has been discovered in GitLab affecting all versions starting from 15.2 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. A namespace-level banned user can access the API.

CVSS3: 2.7
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-1555

An issue has been discovered in GitLab affecting all versions starting from 15.2 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. A namespace-level banned user can access the API.

CVSS3: 2.7
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-1555

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 2.7
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-1417

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. It was possible for an unauthorised user to add child epics linked to victim's epic in an unrelated group.

CVSS3: 4.3
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-1417

An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1. It was possible for an unauthorised user to add child epics linked to victim's epic in an unrelated group.

CVSS3: 4.3
1%
Низкий
около 3 лет назад
debian логотип
CVE-2023-1417

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 4.3
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-1401

An issue has been discovered in GitLab DAST scanner affecting all versions starting from 3.0.29 before 4.0.5, in which the DAST scanner leak cross site cookies on redirect during authorization.

CVSS3: 5
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-1279

An issue has been discovered in GitLab affecting all versions starting from 4.1 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 where it was possible to create a URL that would redirect to a different project.

CVSS3: 2.6
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-1279

An issue has been discovered in GitLab affecting all versions starting from 4.1 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 where it was possible to create a URL that would redirect to a different project.

CVSS3: 2.6
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу