Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 501

Количество 5 501

nvd логотип

CVE-2019-15577

больше 6 лет назад

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed project milestones to be disclosed via groups browsing.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2019-15577

больше 6 лет назад

An information disclosure vulnerability exists in GitLab CE/EE <v12.3. ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2019-15576

больше 6 лет назад

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system notes from a GraphQL endpoint.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-15576

больше 6 лет назад

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system notes from a GraphQL endpoint.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-15576

больше 6 лет назад

An information disclosure vulnerability exists in GitLab CE/EE <v12.3. ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2019-15575

больше 6 лет назад

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands via the API through the blobs scope.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-15575

больше 6 лет назад

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands via the API through the blobs scope.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-15575

больше 6 лет назад

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v1 ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2019-14944

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Gitaly allows injection of command-line flags. This sometimes leads to privilege escalation or remote code execution.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2019-14944

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Gitaly allows injection of command-line flags. This sometimes leads to privilege escalation or remote code execution.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2019-14944

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2019-14943

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.1.4. It uses Hard-coded Credentials.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2019-14943

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.1.4. It uses Hard-coded Credentials.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2019-14943

больше 6 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 12. ...

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2019-14942

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Cookies for GitLab Pages (which have access control) could be sent over cleartext HTTP.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2019-14942

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Cookies for GitLab Pages (which have access control) could be sent over cleartext HTTP.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2019-14942

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 5.9
EPSS: Низкий
ubuntu логотип

CVE-2019-13121

около 6 лет назад

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0.2. The GitHub project integration was vulnerable to an SSRF vulnerability which allowed an attacker to make requests to local network resources. It has Incorrect Access Control.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-13121

около 6 лет назад

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0.2. The GitHub project integration was vulnerable to an SSRF vulnerability which allowed an attacker to make requests to local network resources. It has Incorrect Access Control.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-13121

около 6 лет назад

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0 ...

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-15577

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed project milestones to be disclosed via groups browsing.

CVSS3: 4.3
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-15577

An information disclosure vulnerability exists in GitLab CE/EE <v12.3. ...

CVSS3: 4.3
0%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-15576

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system notes from a GraphQL endpoint.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-15576

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system notes from a GraphQL endpoint.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-15576

An information disclosure vulnerability exists in GitLab CE/EE <v12.3. ...

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-15575

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands via the API through the blobs scope.

CVSS3: 7.5
3%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-15575

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands via the API through the blobs scope.

CVSS3: 7.5
3%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-15575

A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v1 ...

CVSS3: 7.5
3%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-14944

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Gitaly allows injection of command-line flags. This sometimes leads to privilege escalation or remote code execution.

CVSS3: 6.5
1%
Низкий
почти 3 года назад
nvd логотип
CVE-2019-14944

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Gitaly allows injection of command-line flags. This sometimes leads to privilege escalation or remote code execution.

CVSS3: 6.5
1%
Низкий
почти 3 года назад
debian логотип
CVE-2019-14944

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 6.5
1%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2019-14943

An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.1.4. It uses Hard-coded Credentials.

CVSS3: 9.8
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-14943

An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.1.4. It uses Hard-coded Credentials.

CVSS3: 9.8
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-14943

An issue was discovered in GitLab Community and Enterprise Edition 12. ...

CVSS3: 9.8
0%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-14942

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Cookies for GitLab Pages (which have access control) could be sent over cleartext HTTP.

CVSS3: 5.9
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2019-14942

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Cookies for GitLab Pages (which have access control) could be sent over cleartext HTTP.

CVSS3: 5.9
0%
Низкий
почти 3 года назад
debian логотип
CVE-2019-14942

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 5.9
0%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2019-13121

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0.2. The GitHub project integration was vulnerable to an SSRF vulnerability which allowed an attacker to make requests to local network resources. It has Incorrect Access Control.

CVSS3: 7.5
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2019-13121

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0.2. The GitHub project integration was vulnerable to an SSRF vulnerability which allowed an attacker to make requests to local network resources. It has Incorrect Access Control.

CVSS3: 7.5
0%
Низкий
около 6 лет назад
debian логотип
CVE-2019-13121

An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0 ...

CVSS3: 7.5
0%
Низкий
около 6 лет назад

Уязвимостей на страницу