Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 336

Количество 5 336

ubuntu логотип

CVE-2020-13346

больше 5 лет назад

Membership changes are not reflected in ToDo subscriptions in GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, allowing guest users to access confidential issues through API.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-13346

больше 5 лет назад

Membership changes are not reflected in ToDo subscriptions in GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, allowing guest users to access confidential issues through API.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-13346

больше 5 лет назад

Membership changes are not reflected in ToDo subscriptions in GitLab v ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2020-13345

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions starting from 10.8. Reflected XSS on Multiple Routes

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2020-13345

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions starting from 10.8. Reflected XSS on Multiple Routes

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2020-13345

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2020-13344

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Sessions keys are stored in plain-text in Redis which allows attacker with Redis access to authenticate as any user that has a session stored in Redis

CVSS3: 5.7
EPSS: Низкий
nvd логотип

CVE-2020-13344

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Sessions keys are stored in plain-text in Redis which allows attacker with Redis access to authenticate as any user that has a session stored in Redis

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2020-13344

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to ...

CVSS3: 5.7
EPSS: Низкий
ubuntu логотип

CVE-2020-13343

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions starting from 11.2. Unauthorized Users Can View Custom Project Template

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2020-13343

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions starting from 11.2. Unauthorized Users Can View Custom Project Template

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-13343

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2020-13342

больше 5 лет назад

An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2: Lack of Rate Limiting at Re-Sending Confirmation Email

CVSS3: 2.7
EPSS: Низкий
nvd логотип

CVE-2020-13342

больше 5 лет назад

An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2: Lack of Rate Limiting at Re-Sending Confirmation Email

CVSS3: 2.7
EPSS: Низкий
debian логотип

CVE-2020-13342

больше 5 лет назад

An issue has been discovered in GitLab affecting versions prior to 13. ...

CVSS3: 2.7
EPSS: Низкий
ubuntu логотип

CVE-2020-13341

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Insufficient permission check allows attacker with developer role to perform various deletions.

CVSS3: 4.9
EPSS: Низкий
nvd логотип

CVE-2020-13341

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Insufficient permission check allows attacker with developer role to perform various deletions.

CVSS3: 4.9
EPSS: Низкий
debian логотип

CVE-2020-13341

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to ...

CVSS3: 4.9
EPSS: Низкий
ubuntu логотип

CVE-2020-13340

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2: Stored XSS in CI Job Log

CVSS3: 8.7
EPSS: Низкий
nvd логотип

CVE-2020-13340

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2: Stored XSS in CI Job Log

CVSS3: 8.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-13346

Membership changes are not reflected in ToDo subscriptions in GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, allowing guest users to access confidential issues through API.

CVSS3: 6.5
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13346

Membership changes are not reflected in ToDo subscriptions in GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, allowing guest users to access confidential issues through API.

CVSS3: 6.5
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13346

Membership changes are not reflected in ToDo subscriptions in GitLab v ...

CVSS3: 6.5
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13345

An issue has been discovered in GitLab affecting all versions starting from 10.8. Reflected XSS on Multiple Routes

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13345

An issue has been discovered in GitLab affecting all versions starting from 10.8. Reflected XSS on Multiple Routes

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13345

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13344

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Sessions keys are stored in plain-text in Redis which allows attacker with Redis access to authenticate as any user that has a session stored in Redis

CVSS3: 5.7
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13344

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Sessions keys are stored in plain-text in Redis which allows attacker with Redis access to authenticate as any user that has a session stored in Redis

CVSS3: 5.7
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13344

An issue has been discovered in GitLab affecting all versions prior to ...

CVSS3: 5.7
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13343

An issue has been discovered in GitLab affecting all versions starting from 11.2. Unauthorized Users Can View Custom Project Template

CVSS3: 7.5
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13343

An issue has been discovered in GitLab affecting all versions starting from 11.2. Unauthorized Users Can View Custom Project Template

CVSS3: 7.5
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13343

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 7.5
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13342

An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2: Lack of Rate Limiting at Re-Sending Confirmation Email

CVSS3: 2.7
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13342

An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2: Lack of Rate Limiting at Re-Sending Confirmation Email

CVSS3: 2.7
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13342

An issue has been discovered in GitLab affecting versions prior to 13. ...

CVSS3: 2.7
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13341

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Insufficient permission check allows attacker with developer role to perform various deletions.

CVSS3: 4.9
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13341

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Insufficient permission check allows attacker with developer role to perform various deletions.

CVSS3: 4.9
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13341

An issue has been discovered in GitLab affecting all versions prior to ...

CVSS3: 4.9
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13340

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2: Stored XSS in CI Job Log

CVSS3: 8.7
1%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13340

An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2: Stored XSS in CI Job Log

CVSS3: 8.7
1%
Низкий
больше 5 лет назад

Уязвимостей на страницу