Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 336

Количество 5 336

debian логотип

CVE-2020-13340

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions prior to ...

CVSS3: 8.7
EPSS: Низкий
ubuntu логотип

CVE-2020-13339

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions before 13.2.10, 13.3.7 and 13.4.2: XSS in SVG File Preview. Overall impact is limited due to the current user only being impacted.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2020-13339

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions before 13.2.10, 13.3.7 and 13.4.2: XSS in SVG File Preview. Overall impact is limited due to the current user only being impacted.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2020-13339

больше 5 лет назад

An issue has been discovered in GitLab affecting all versions before 1 ...

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2020-13338

больше 5 лет назад

An issue has been discovered in GitLab affecting versions prior to 12.10.13, 13.0.8, 13.1.2. A stored cross-site scripting vulnerability was discovered when editing references.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2020-13338

больше 5 лет назад

An issue has been discovered in GitLab affecting versions prior to 12.10.13, 13.0.8, 13.1.2. A stored cross-site scripting vulnerability was discovered when editing references.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2020-13338

больше 5 лет назад

An issue has been discovered in GitLab affecting versions prior to 12. ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2020-13337

больше 5 лет назад

An issue has been discovered in GitLab affecting versions from 12.10 to 12.10.12 that allowed for a stored XSS payload to be added as a group name.

CVSS3: 7.2
EPSS: Низкий
nvd логотип

CVE-2020-13337

больше 5 лет назад

An issue has been discovered in GitLab affecting versions from 12.10 to 12.10.12 that allowed for a stored XSS payload to be added as a group name.

CVSS3: 7.2
EPSS: Низкий
debian логотип

CVE-2020-13337

больше 5 лет назад

An issue has been discovered in GitLab affecting versions from 12.10 t ...

CVSS3: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2020-13336

больше 5 лет назад

An issue has been discovered in GitLab affecting versions from 11.8 before 12.10.13. GitLab was vulnerable to a stored XSS by in the error tracking feature.

CVSS3: 4
EPSS: Низкий
nvd логотип

CVE-2020-13336

больше 5 лет назад

An issue has been discovered in GitLab affecting versions from 11.8 before 12.10.13. GitLab was vulnerable to a stored XSS by in the error tracking feature.

CVSS3: 4
EPSS: Низкий
debian логотип

CVE-2020-13336

больше 5 лет назад

An issue has been discovered in GitLab affecting versions from 11.8 be ...

CVSS3: 4
EPSS: Низкий
ubuntu логотип

CVE-2020-13335

больше 5 лет назад

Improper group membership validation when deleting a user account in GitLab >=7.12 allows a user to delete own account without deleting/transferring their group.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2020-13335

больше 5 лет назад

Improper group membership validation when deleting a user account in GitLab >=7.12 allows a user to delete own account without deleting/transferring their group.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2020-13335

больше 5 лет назад

Improper group membership validation when deleting a user account in G ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2020-13334

больше 5 лет назад

In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper authorization checks allow a non-member of a project/group to change the confidentiality attribute of issue via mutation GraphQL query

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2020-13334

больше 5 лет назад

In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper authorization checks allow a non-member of a project/group to change the confidentiality attribute of issue via mutation GraphQL query

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2020-13334

больше 5 лет назад

In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper autho ...

CVSS3: 5.9
EPSS: Низкий
ubuntu логотип

CVE-2020-13333

больше 5 лет назад

A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to update an asset as a link from a release had a regex check which caused exponential number of backtracks for certain user supplied values resulting in high CPU usage.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2020-13340

An issue has been discovered in GitLab affecting all versions prior to ...

CVSS3: 8.7
1%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13339

An issue has been discovered in GitLab affecting all versions before 13.2.10, 13.3.7 and 13.4.2: XSS in SVG File Preview. Overall impact is limited due to the current user only being impacted.

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13339

An issue has been discovered in GitLab affecting all versions before 13.2.10, 13.3.7 and 13.4.2: XSS in SVG File Preview. Overall impact is limited due to the current user only being impacted.

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13339

An issue has been discovered in GitLab affecting all versions before 1 ...

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13338

An issue has been discovered in GitLab affecting versions prior to 12.10.13, 13.0.8, 13.1.2. A stored cross-site scripting vulnerability was discovered when editing references.

CVSS3: 5.4
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13338

An issue has been discovered in GitLab affecting versions prior to 12.10.13, 13.0.8, 13.1.2. A stored cross-site scripting vulnerability was discovered when editing references.

CVSS3: 5.4
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13338

An issue has been discovered in GitLab affecting versions prior to 12. ...

CVSS3: 5.4
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13337

An issue has been discovered in GitLab affecting versions from 12.10 to 12.10.12 that allowed for a stored XSS payload to be added as a group name.

CVSS3: 7.2
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13337

An issue has been discovered in GitLab affecting versions from 12.10 to 12.10.12 that allowed for a stored XSS payload to be added as a group name.

CVSS3: 7.2
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13337

An issue has been discovered in GitLab affecting versions from 12.10 t ...

CVSS3: 7.2
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13336

An issue has been discovered in GitLab affecting versions from 11.8 before 12.10.13. GitLab was vulnerable to a stored XSS by in the error tracking feature.

CVSS3: 4
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13336

An issue has been discovered in GitLab affecting versions from 11.8 before 12.10.13. GitLab was vulnerable to a stored XSS by in the error tracking feature.

CVSS3: 4
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13336

An issue has been discovered in GitLab affecting versions from 11.8 be ...

CVSS3: 4
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13335

Improper group membership validation when deleting a user account in GitLab >=7.12 allows a user to delete own account without deleting/transferring their group.

CVSS3: 4.3
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13335

Improper group membership validation when deleting a user account in GitLab >=7.12 allows a user to delete own account without deleting/transferring their group.

CVSS3: 4.3
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13335

Improper group membership validation when deleting a user account in G ...

CVSS3: 4.3
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13334

In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper authorization checks allow a non-member of a project/group to change the confidentiality attribute of issue via mutation GraphQL query

CVSS3: 5.9
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13334

In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper authorization checks allow a non-member of a project/group to change the confidentiality attribute of issue via mutation GraphQL query

CVSS3: 5.9
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13334

In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper autho ...

CVSS3: 5.9
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-13333

A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to update an asset as a link from a release had a regex check which caused exponential number of backtracks for certain user supplied values resulting in high CPU usage.

CVSS3: 4.3
0%
Низкий
больше 5 лет назад

Уязвимостей на страницу