Количество 5 545
Количество 5 545
CVE-2023-0483
An issue has been discovered in GitLab affecting all versions starting ...
CVE-2023-0450
An issue has been discovered in GitLab affecting all versions starting from 8.1 to 15.8.5, and from 15.9 to 15.9.4, and from 15.10 to 15.10.1. It was possible to add a branch with an ambiguous name that could be used to social engineer users.
CVE-2023-0450
An issue has been discovered in GitLab affecting all versions starting from 8.1 to 15.8.5, and from 15.9 to 15.9.4, and from 15.10 to 15.10.1. It was possible to add a branch with an ambiguous name that could be used to social engineer users.
CVE-2023-0450
An issue has been discovered in GitLab affecting all versions starting ...
CVE-2023-0319
An issue has been discovered in GitLab affecting all versions starting from 13.6 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1, allowing to read environment names supposed to be restricted to project memebers only.
CVE-2023-0319
An issue has been discovered in GitLab affecting all versions starting from 13.6 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1, allowing to read environment names supposed to be restricted to project memebers only.
CVE-2023-0319
An issue has been discovered in GitLab affecting all versions starting ...
CVE-2023-0223
An issue has been discovered in GitLab affecting all versions starting from 15.5 before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. Non-project members could retrieve release descriptions via the API, even if the release visibility is restricted to project members only in the project settings.
CVE-2023-0223
An issue has been discovered in GitLab affecting all versions starting from 15.5 before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. Non-project members could retrieve release descriptions via the API, even if the release visibility is restricted to project members only in the project settings.
CVE-2023-0223
An issue has been discovered in GitLab affecting all versions starting ...
CVE-2023-0155
An issue has been discovered in GitLab CE/EE affecting all versions before 15.8.5, 15.9.4, 15.10.1. Open redirects was possible due to framing arbitrary content on any page allowing user controlled markdown
CVE-2023-0155
An issue has been discovered in GitLab CE/EE affecting all versions before 15.8.5, 15.9.4, 15.10.1. Open redirects was possible due to framing arbitrary content on any page allowing user controlled markdown
CVE-2023-0155
An issue has been discovered in GitLab CE/EE affecting all versions be ...
CVE-2023-0121
A denial of service issue was discovered in GitLab CE/EE affecting all versions starting from 13.2.4 before 15.10.8, all versions starting from 15.11 before 15.11.7, all versions starting from 16.0 before 16.0.2 which allows an attacker to cause high resource consumption using malicious test report artifacts.
CVE-2023-0121
A denial of service issue was discovered in GitLab CE/EE affecting all versions starting from 13.2.4 before 15.10.8, all versions starting from 15.11 before 15.11.7, all versions starting from 16.0 before 16.0.2 which allows an attacker to cause high resource consumption using malicious test report artifacts.
CVE-2023-0121
A denial of service issue was discovered in GitLab CE/EE affecting all ...
CVE-2023-0120
An issue has been discovered in GitLab affecting all versions starting from 10.0 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to edit labels description by an unauthorised user.
CVE-2023-0120
An issue has been discovered in GitLab affecting all versions starting from 10.0 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to edit labels description by an unauthorised user.
CVE-2023-0120
An issue has been discovered in GitLab affecting all versions starting ...
CVE-2023-0050
An issue has been discovered in GitLab affecting all versions starting from 13.7 before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A specially crafted Kroki diagram could lead to a stored XSS on the client side which allows attackers to perform arbitrary actions on behalf of victims.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-0483 An issue has been discovered in GitLab affecting all versions starting ... | CVSS3: 5.5 | 0% Низкий | около 3 лет назад | |
CVE-2023-0450 An issue has been discovered in GitLab affecting all versions starting from 8.1 to 15.8.5, and from 15.9 to 15.9.4, and from 15.10 to 15.10.1. It was possible to add a branch with an ambiguous name that could be used to social engineer users. | CVSS3: 3.7 | 1% Низкий | около 3 лет назад | |
CVE-2023-0450 An issue has been discovered in GitLab affecting all versions starting from 8.1 to 15.8.5, and from 15.9 to 15.9.4, and from 15.10 to 15.10.1. It was possible to add a branch with an ambiguous name that could be used to social engineer users. | CVSS3: 3.7 | 1% Низкий | около 3 лет назад | |
CVE-2023-0450 An issue has been discovered in GitLab affecting all versions starting ... | CVSS3: 3.7 | 1% Низкий | около 3 лет назад | |
CVE-2023-0319 An issue has been discovered in GitLab affecting all versions starting from 13.6 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1, allowing to read environment names supposed to be restricted to project memebers only. | CVSS3: 5.8 | 1% Низкий | около 3 лет назад | |
CVE-2023-0319 An issue has been discovered in GitLab affecting all versions starting from 13.6 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1, allowing to read environment names supposed to be restricted to project memebers only. | CVSS3: 5.8 | 1% Низкий | около 3 лет назад | |
CVE-2023-0319 An issue has been discovered in GitLab affecting all versions starting ... | CVSS3: 5.8 | 1% Низкий | около 3 лет назад | |
CVE-2023-0223 An issue has been discovered in GitLab affecting all versions starting from 15.5 before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. Non-project members could retrieve release descriptions via the API, even if the release visibility is restricted to project members only in the project settings. | CVSS3: 5.3 | 3% Низкий | около 3 лет назад | |
CVE-2023-0223 An issue has been discovered in GitLab affecting all versions starting from 15.5 before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. Non-project members could retrieve release descriptions via the API, even if the release visibility is restricted to project members only in the project settings. | CVSS3: 5.3 | 3% Низкий | около 3 лет назад | |
CVE-2023-0223 An issue has been discovered in GitLab affecting all versions starting ... | CVSS3: 5.3 | 3% Низкий | около 3 лет назад | |
CVE-2023-0155 An issue has been discovered in GitLab CE/EE affecting all versions before 15.8.5, 15.9.4, 15.10.1. Open redirects was possible due to framing arbitrary content on any page allowing user controlled markdown | CVSS3: 5.4 | 0% Низкий | почти 3 года назад | |
CVE-2023-0155 An issue has been discovered in GitLab CE/EE affecting all versions before 15.8.5, 15.9.4, 15.10.1. Open redirects was possible due to framing arbitrary content on any page allowing user controlled markdown | CVSS3: 5.4 | 0% Низкий | почти 3 года назад | |
CVE-2023-0155 An issue has been discovered in GitLab CE/EE affecting all versions be ... | CVSS3: 5.4 | 0% Низкий | почти 3 года назад | |
CVE-2023-0121 A denial of service issue was discovered in GitLab CE/EE affecting all versions starting from 13.2.4 before 15.10.8, all versions starting from 15.11 before 15.11.7, all versions starting from 16.0 before 16.0.2 which allows an attacker to cause high resource consumption using malicious test report artifacts. | CVSS3: 6.5 | 1% Низкий | почти 3 года назад | |
CVE-2023-0121 A denial of service issue was discovered in GitLab CE/EE affecting all versions starting from 13.2.4 before 15.10.8, all versions starting from 15.11 before 15.11.7, all versions starting from 16.0 before 16.0.2 which allows an attacker to cause high resource consumption using malicious test report artifacts. | CVSS3: 6.5 | 1% Низкий | почти 3 года назад | |
CVE-2023-0121 A denial of service issue was discovered in GitLab CE/EE affecting all ... | CVSS3: 6.5 | 1% Низкий | почти 3 года назад | |
CVE-2023-0120 An issue has been discovered in GitLab affecting all versions starting from 10.0 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to edit labels description by an unauthorised user. | CVSS3: 3.5 | 0% Низкий | больше 2 лет назад | |
CVE-2023-0120 An issue has been discovered in GitLab affecting all versions starting from 10.0 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to edit labels description by an unauthorised user. | CVSS3: 3.5 | 0% Низкий | больше 2 лет назад | |
CVE-2023-0120 An issue has been discovered in GitLab affecting all versions starting ... | CVSS3: 3.5 | 0% Низкий | больше 2 лет назад | |
CVE-2023-0050 An issue has been discovered in GitLab affecting all versions starting from 13.7 before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A specially crafted Kroki diagram could lead to a stored XSS on the client side which allows attackers to perform arbitrary actions on behalf of victims. | CVSS3: 8.7 | 65% Средний | около 3 лет назад |
Уязвимостей на страницу