Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 336

Количество 5 336

ubuntu логотип

CVE-2019-15723

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.9.x and 11.10.x before 11.10.1. Merge requests created by email could be used to bypass push rules in certain situations.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2019-15723

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.9.x and 11.10.x before 11.10.1. Merge requests created by email could be used to bypass push rules in certain situations.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2019-15723

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11. ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2019-15722

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.2.1. Particular mathematical expressions in GitLab Markdown can exhaust client resources.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-15722

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.2.1. Particular mathematical expressions in GitLab Markdown can exhaust client resources.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-15722

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 8.1 ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2019-15721

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 10.8 through 12.2.1. An internal endpoint unintentionally allowed group maintainers to view and edit group runner settings.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2019-15721

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 10.8 through 12.2.1. An internal endpoint unintentionally allowed group maintainers to view and edit group runner settings.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2019-15721

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 10. ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2019-15594

почти 6 лет назад

GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2019-15594

почти 6 лет назад

GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2019-15594

почти 6 лет назад

GitLab 11.8 and later contains a security vulnerability that allows a ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2019-15593

около 6 лет назад

GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2019-15593

около 6 лет назад

GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2019-15593

около 6 лет назад

GitLab 12.2.3 contains a security vulnerability that allows a user to ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2019-15592

почти 6 лет назад

GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2019-15592

почти 6 лет назад

GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2019-15592

почти 6 лет назад

GitLab 12.2.2 and below contains a security vulnerability that allows ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2019-15591

около 6 лет назад

An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2019-15591

около 6 лет назад

An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-15723

An issue was discovered in GitLab Community and Enterprise Edition 11.9.x and 11.10.x before 11.10.1. Merge requests created by email could be used to bypass push rules in certain situations.

CVSS3: 5.3
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-15723

An issue was discovered in GitLab Community and Enterprise Edition 11.9.x and 11.10.x before 11.10.1. Merge requests created by email could be used to bypass push rules in certain situations.

CVSS3: 5.3
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-15723

An issue was discovered in GitLab Community and Enterprise Edition 11. ...

CVSS3: 5.3
0%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-15722

An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.2.1. Particular mathematical expressions in GitLab Markdown can exhaust client resources.

CVSS3: 7.5
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-15722

An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.2.1. Particular mathematical expressions in GitLab Markdown can exhaust client resources.

CVSS3: 7.5
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-15722

An issue was discovered in GitLab Community and Enterprise Edition 8.1 ...

CVSS3: 7.5
0%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-15721

An issue was discovered in GitLab Community and Enterprise Edition 10.8 through 12.2.1. An internal endpoint unintentionally allowed group maintainers to view and edit group runner settings.

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-15721

An issue was discovered in GitLab Community and Enterprise Edition 10.8 through 12.2.1. An internal endpoint unintentionally allowed group maintainers to view and edit group runner settings.

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-15721

An issue was discovered in GitLab Community and Enterprise Edition 10. ...

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-15594

GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint.

CVSS3: 4.3
0%
Низкий
почти 6 лет назад
nvd логотип
CVE-2019-15594

GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint.

CVSS3: 4.3
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2019-15594

GitLab 11.8 and later contains a security vulnerability that allows a ...

CVSS3: 4.3
0%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2019-15593

GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.

CVSS3: 6.5
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2019-15593

GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.

CVSS3: 6.5
0%
Низкий
около 6 лет назад
debian логотип
CVE-2019-15593

GitLab 12.2.3 contains a security vulnerability that allows a user to ...

CVSS3: 6.5
0%
Низкий
около 6 лет назад
ubuntu логотип
CVE-2019-15592

GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline.

CVSS3: 4.3
1%
Низкий
почти 6 лет назад
nvd логотип
CVE-2019-15592

GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline.

CVSS3: 4.3
1%
Низкий
почти 6 лет назад
debian логотип
CVE-2019-15592

GitLab 12.2.2 and below contains a security vulnerability that allows ...

CVSS3: 4.3
1%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2019-15591

An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.

CVSS3: 6.5
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2019-15591

An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.

CVSS3: 6.5
0%
Низкий
около 6 лет назад

Уязвимостей на страницу