Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 336

Количество 5 336

ubuntu логотип

CVE-2018-14601

больше 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.2. A Denial of Service can occur because Markdown rendering times are slow.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-14601

больше 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.2. A Denial of Service can occur because Markdown rendering times are slow.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-14601

больше 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11. ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2018-14364

больше 7 лет назад

GitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 10.8.6, and 11.x before 11.0.4 allows Directory Traversal with write access and resultant remote code execution via the GitLab projects import component.

CVSS3: 9.8
EPSS: Средний
nvd логотип

CVE-2018-14364

больше 7 лет назад

GitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 10.8.6, and 11.x before 11.0.4 allows Directory Traversal with write access and resultant remote code execution via the GitLab projects import component.

CVSS3: 9.8
EPSS: Средний
debian логотип

CVE-2018-14364

больше 7 лет назад

GitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 1 ...

CVSS3: 9.8
EPSS: Средний
ubuntu логотип

CVE-2018-12607

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1. The charts feature contained a persistent XSS issue due to a lack of output encoding.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2018-12607

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1. The charts feature contained a persistent XSS issue due to a lack of output encoding.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2018-12607

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edi ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2018-12606

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1. The wiki contains a persistent XSS issue due to a lack of output encoding affecting a specific markdown feature.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2018-12606

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1. The wiki contains a persistent XSS issue due to a lack of output encoding affecting a specific markdown feature.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2018-12606

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edi ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2018-12605

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edition 10.7.x before 10.7.6. The usage of 'url_for' contained a XSS issue due to it allowing arbitrary protocols as a parameter.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2018-12605

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edition 10.7.x before 10.7.6. The usage of 'url_for' contained a XSS issue due to it allowing arbitrary protocols as a parameter.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2018-12605

больше 7 лет назад

An issue was discovered in GitLab Community Edition and Enterprise Edi ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2018-10379

больше 7 лет назад

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 10.5.8, 10.6.x before 10.6.5, and 10.7.x before 10.7.2. The Move Issue feature contained a persistent XSS vulnerability.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2018-10379

больше 7 лет назад

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 10.5.8, 10.6.x before 10.6.5, and 10.7.x before 10.7.2. The Move Issue feature contained a persistent XSS vulnerability.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2018-10379

больше 7 лет назад

An issue was discovered in GitLab Community Edition (CE) and Enterpris ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2017-8778

почти 9 лет назад

GitLab before 8.14.9, 8.15.x before 8.15.6, and 8.16.x before 8.16.5 has XSS via a SCRIPT element in an issue attachment or avatar that is an SVG document.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2017-8778

почти 9 лет назад

GitLab before 8.14.9, 8.15.x before 8.15.6, and 8.16.x before 8.16.5 has XSS via a SCRIPT element in an issue attachment or avatar that is an SVG document.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-14601

An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.2. A Denial of Service can occur because Markdown rendering times are slow.

CVSS3: 7.5
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-14601

An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.2. A Denial of Service can occur because Markdown rendering times are slow.

CVSS3: 7.5
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-14601

An issue was discovered in GitLab Community and Enterprise Edition 11. ...

CVSS3: 7.5
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-14364

GitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 10.8.6, and 11.x before 11.0.4 allows Directory Traversal with write access and resultant remote code execution via the GitLab projects import component.

CVSS3: 9.8
40%
Средний
больше 7 лет назад
nvd логотип
CVE-2018-14364

GitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 10.8.6, and 11.x before 11.0.4 allows Directory Traversal with write access and resultant remote code execution via the GitLab projects import component.

CVSS3: 9.8
40%
Средний
больше 7 лет назад
debian логотип
CVE-2018-14364

GitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 1 ...

CVSS3: 9.8
40%
Средний
больше 7 лет назад
ubuntu логотип
CVE-2018-12607

An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1. The charts feature contained a persistent XSS issue due to a lack of output encoding.

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-12607

An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1. The charts feature contained a persistent XSS issue due to a lack of output encoding.

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-12607

An issue was discovered in GitLab Community Edition and Enterprise Edi ...

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-12606

An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1. The wiki contains a persistent XSS issue due to a lack of output encoding affecting a specific markdown feature.

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-12606

An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1. The wiki contains a persistent XSS issue due to a lack of output encoding affecting a specific markdown feature.

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-12606

An issue was discovered in GitLab Community Edition and Enterprise Edi ...

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-12605

An issue was discovered in GitLab Community Edition and Enterprise Edition 10.7.x before 10.7.6. The usage of 'url_for' contained a XSS issue due to it allowing arbitrary protocols as a parameter.

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-12605

An issue was discovered in GitLab Community Edition and Enterprise Edition 10.7.x before 10.7.6. The usage of 'url_for' contained a XSS issue due to it allowing arbitrary protocols as a parameter.

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-12605

An issue was discovered in GitLab Community Edition and Enterprise Edi ...

CVSS3: 5.4
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-10379

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 10.5.8, 10.6.x before 10.6.5, and 10.7.x before 10.7.2. The Move Issue feature contained a persistent XSS vulnerability.

CVSS3: 6.1
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-10379

An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 10.5.8, 10.6.x before 10.6.5, and 10.7.x before 10.7.2. The Move Issue feature contained a persistent XSS vulnerability.

CVSS3: 6.1
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-10379

An issue was discovered in GitLab Community Edition (CE) and Enterpris ...

CVSS3: 6.1
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2017-8778

GitLab before 8.14.9, 8.15.x before 8.15.6, and 8.16.x before 8.16.5 has XSS via a SCRIPT element in an issue attachment or avatar that is an SVG document.

CVSS3: 6.1
0%
Низкий
почти 9 лет назад
nvd логотип
CVE-2017-8778

GitLab before 8.14.9, 8.15.x before 8.15.6, and 8.16.x before 8.16.5 has XSS via a SCRIPT element in an issue attachment or avatar that is an SVG document.

CVSS3: 6.1
0%
Низкий
почти 9 лет назад

Уязвимостей на страницу