Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 545

Количество 5 545

ubuntu логотип

CVE-2021-22248

больше 4 лет назад

Improper authorization on the pipelines page in GitLab CE/EE affecting all versions since 13.12 allowed unauthorized users to view some pipeline information for public projects that have access to pipelines restricted to members only

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2021-22248

больше 4 лет назад

Improper authorization on the pipelines page in GitLab CE/EE affecting all versions since 13.12 allowed unauthorized users to view some pipeline information for public projects that have access to pipelines restricted to members only

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2021-22248

больше 4 лет назад

Improper authorization on the pipelines page in GitLab CE/EE affecting ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2021-22247

больше 4 лет назад

Improper authorization in GitLab CE/EE affecting all versions since 13.0 allows guests in private projects to view CI/CD analytics

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2021-22247

больше 4 лет назад

Improper authorization in GitLab CE/EE affecting all versions since 13.0 allows guests in private projects to view CI/CD analytics

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2021-22247

больше 4 лет назад

Improper authorization in GitLab CE/EE affecting all versions since 13 ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2021-22246

больше 4 лет назад

A vulnerability was discovered in GitLab versions before 14.0.2, 13.12.6, 13.11.6. GitLab Webhook feature could be abused to perform denial of service attacks.

CVSS3: 7.7
EPSS: Низкий
nvd логотип

CVE-2021-22246

больше 4 лет назад

A vulnerability was discovered in GitLab versions before 14.0.2, 13.12.6, 13.11.6. GitLab Webhook feature could be abused to perform denial of service attacks.

CVSS3: 7.7
EPSS: Низкий
debian логотип

CVE-2021-22246

больше 4 лет назад

A vulnerability was discovered in GitLab versions before 14.0.2, 13.12 ...

CVSS3: 7.7
EPSS: Низкий
ubuntu логотип

CVE-2021-22245

больше 4 лет назад

Improper validation of commit author in GitLab CE/EE affecting all versions allowed an attacker to make several pages in a project impossible to view

CVSS3: 2.7
EPSS: Низкий
nvd логотип

CVE-2021-22245

больше 4 лет назад

Improper validation of commit author in GitLab CE/EE affecting all versions allowed an attacker to make several pages in a project impossible to view

CVSS3: 2.7
EPSS: Низкий
debian логотип

CVE-2021-22245

больше 4 лет назад

Improper validation of commit author in GitLab CE/EE affecting all ver ...

CVSS3: 2.7
EPSS: Низкий
ubuntu логотип

CVE-2021-22244

больше 4 лет назад

Improper authorization in the vulnerability report feature in GitLab EE affecting all versions since 13.1 allowed a reporter to access vulnerability data

CVSS3: 3.1
EPSS: Низкий
nvd логотип

CVE-2021-22244

больше 4 лет назад

Improper authorization in the vulnerability report feature in GitLab EE affecting all versions since 13.1 allowed a reporter to access vulnerability data

CVSS3: 3.1
EPSS: Низкий
debian логотип

CVE-2021-22244

больше 4 лет назад

Improper authorization in the vulnerability report feature in GitLab E ...

CVSS3: 3.1
EPSS: Низкий
ubuntu логотип

CVE-2021-22243

больше 4 лет назад

Under specialized conditions, GitLab CE/EE versions starting 7.10 may allow existing GitLab users to use an invite URL meant for another email address to gain access into a group.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2021-22243

больше 4 лет назад

Under specialized conditions, GitLab CE/EE versions starting 7.10 may allow existing GitLab users to use an invite URL meant for another email address to gain access into a group.

CVSS3: 5
EPSS: Низкий
debian логотип

CVE-2021-22243

больше 4 лет назад

Under specialized conditions, GitLab CE/EE versions starting 7.10 may ...

CVSS3: 5
EPSS: Низкий
ubuntu логотип

CVE-2021-22242

больше 4 лет назад

Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown

CVSS3: 8.7
EPSS: Низкий
nvd логотип

CVE-2021-22242

больше 4 лет назад

Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown

CVSS3: 8.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-22248

Improper authorization on the pipelines page in GitLab CE/EE affecting all versions since 13.12 allowed unauthorized users to view some pipeline information for public projects that have access to pipelines restricted to members only

CVSS3: 5.3
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-22248

Improper authorization on the pipelines page in GitLab CE/EE affecting all versions since 13.12 allowed unauthorized users to view some pipeline information for public projects that have access to pipelines restricted to members only

CVSS3: 5.3
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-22248

Improper authorization on the pipelines page in GitLab CE/EE affecting ...

CVSS3: 5.3
0%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2021-22247

Improper authorization in GitLab CE/EE affecting all versions since 13.0 allows guests in private projects to view CI/CD analytics

CVSS3: 4.3
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-22247

Improper authorization in GitLab CE/EE affecting all versions since 13.0 allows guests in private projects to view CI/CD analytics

CVSS3: 4.3
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-22247

Improper authorization in GitLab CE/EE affecting all versions since 13 ...

CVSS3: 4.3
0%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2021-22246

A vulnerability was discovered in GitLab versions before 14.0.2, 13.12.6, 13.11.6. GitLab Webhook feature could be abused to perform denial of service attacks.

CVSS3: 7.7
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-22246

A vulnerability was discovered in GitLab versions before 14.0.2, 13.12.6, 13.11.6. GitLab Webhook feature could be abused to perform denial of service attacks.

CVSS3: 7.7
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-22246

A vulnerability was discovered in GitLab versions before 14.0.2, 13.12 ...

CVSS3: 7.7
0%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2021-22245

Improper validation of commit author in GitLab CE/EE affecting all versions allowed an attacker to make several pages in a project impossible to view

CVSS3: 2.7
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-22245

Improper validation of commit author in GitLab CE/EE affecting all versions allowed an attacker to make several pages in a project impossible to view

CVSS3: 2.7
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-22245

Improper validation of commit author in GitLab CE/EE affecting all ver ...

CVSS3: 2.7
0%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2021-22244

Improper authorization in the vulnerability report feature in GitLab EE affecting all versions since 13.1 allowed a reporter to access vulnerability data

CVSS3: 3.1
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-22244

Improper authorization in the vulnerability report feature in GitLab EE affecting all versions since 13.1 allowed a reporter to access vulnerability data

CVSS3: 3.1
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-22244

Improper authorization in the vulnerability report feature in GitLab E ...

CVSS3: 3.1
0%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2021-22243

Under specialized conditions, GitLab CE/EE versions starting 7.10 may allow existing GitLab users to use an invite URL meant for another email address to gain access into a group.

CVSS3: 5
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-22243

Under specialized conditions, GitLab CE/EE versions starting 7.10 may allow existing GitLab users to use an invite URL meant for another email address to gain access into a group.

CVSS3: 5
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-22243

Under specialized conditions, GitLab CE/EE versions starting 7.10 may ...

CVSS3: 5
0%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2021-22242

Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown

CVSS3: 8.7
2%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-22242

Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown

CVSS3: 8.7
2%
Низкий
больше 4 лет назад

Уязвимостей на страницу