Логотип exploitDog
product: "gitlab"
Консоль
Логотип exploitDog

exploitDog

product: "gitlab"

Количество 5 501

Количество 5 501

nvd логотип

CVE-2018-17976

больше 7 лет назад

An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via Epic change descriptions.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2018-17976

больше 7 лет назад

An issue was discovered in GitLab Community Edition 11.x before 11.1.8 ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2018-17975

больше 7 лет назад

An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the GFM markdown API.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2018-17975

больше 7 лет назад

An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the GFM markdown API.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2018-17975

больше 7 лет назад

An issue was discovered in GitLab Community Edition 11.x before 11.1.8 ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2018-17939

больше 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the merge request JSON endpoint.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-17939

больше 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the merge request JSON endpoint.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-17939

больше 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 11. ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2018-17537

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. blog-viewer has stored XSS during repository browsing, if package.json exists. .

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2018-17537

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. blog-viewer has stored XSS during repository browsing, if package.json exists. .

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2018-17537

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2018-17536

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is stored XSS on the merge request page via project import.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2018-17536

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is stored XSS on the merge request page via project import.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2018-17536

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2018-17455

почти 3 года назад

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-17455

почти 3 года назад

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-17455

почти 3 года назад

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11 ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2018-17454

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is stored XSS on the issue details screen.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2018-17454

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is stored XSS on the issue details screen.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2018-17454

почти 3 года назад

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-17976

An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via Epic change descriptions.

CVSS3: 6.5
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-17976

An issue was discovered in GitLab Community Edition 11.x before 11.1.8 ...

CVSS3: 6.5
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-17975

An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the GFM markdown API.

CVSS3: 5.3
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-17975

An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the GFM markdown API.

CVSS3: 5.3
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-17975

An issue was discovered in GitLab Community Edition 11.x before 11.1.8 ...

CVSS3: 5.3
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-17939

An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the merge request JSON endpoint.

CVSS3: 7.5
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-17939

An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the merge request JSON endpoint.

CVSS3: 7.5
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-17939

An issue was discovered in GitLab Community and Enterprise Edition 11. ...

CVSS3: 7.5
0%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2018-17537

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. blog-viewer has stored XSS during repository browsing, if package.json exists. .

CVSS3: 5.4
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2018-17537

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. blog-viewer has stored XSS during repository browsing, if package.json exists. .

CVSS3: 5.4
0%
Низкий
почти 3 года назад
debian логотип
CVE-2018-17537

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 5.4
0%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2018-17536

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is stored XSS on the merge request page via project import.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2018-17536

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is stored XSS on the merge request page via project import.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
debian логотип
CVE-2018-17536

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 5.4
0%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2018-17455

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2018-17455

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. Attackers could obtain sensitive information about group names, avatars, LDAP settings, and descriptions via an insecure direct object reference to the "merge request approvals" feature.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
debian логотип
CVE-2018-17455

An issue was discovered in GitLab Enterprise Edition before 11.1.7, 11 ...

CVSS3: 7.5
0%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2018-17454

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is stored XSS on the issue details screen.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2018-17454

An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x before 11.3.1. There is stored XSS on the issue details screen.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
debian логотип
CVE-2018-17454

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 5.4
0%
Низкий
почти 3 года назад

Уязвимостей на страницу