Количество 5 943
Количество 5 943
CVE-2019-15721
An issue was discovered in GitLab Community and Enterprise Edition 10.8 through 12.2.1. An internal endpoint unintentionally allowed group maintainers to view and edit group runner settings.
CVE-2019-15721
An issue was discovered in GitLab Community and Enterprise Edition 10.8 through 12.2.1. An internal endpoint unintentionally allowed group maintainers to view and edit group runner settings.
CVE-2019-15721
An issue was discovered in GitLab Community and Enterprise Edition 10. ...
CVE-2019-15594
GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint.
CVE-2019-15594
GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint.
CVE-2019-15594
GitLab 11.8 and later contains a security vulnerability that allows a ...
CVE-2019-15593
GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.
CVE-2019-15593
GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.
CVE-2019-15593
GitLab 12.2.3 contains a security vulnerability that allows a user to ...
CVE-2019-15592
GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline.
CVE-2019-15592
GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline.
CVE-2019-15592
GitLab 12.2.2 and below contains a security vulnerability that allows ...
CVE-2019-15591
An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.
CVE-2019-15591
An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.
CVE-2019-15591
An improper access control vulnerability exists in GitLab <12.3.3 that ...
CVE-2019-15590
An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edition (EE) where private merge requests and issues would be disclosed with the Group Search feature provided by Elasticsearch integration
CVE-2019-15590
An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edition (EE) where private merge requests and issues would be disclosed with the Group Search feature provided by Elasticsearch integration
CVE-2019-15590
An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 fo ...
CVE-2019-15589
An improper access control vulnerability exists in Gitlab <v12.3.2, <v12.2.6, <v12.1.12 which would allow a blocked user would be able to use GIT clone and pull if he had obtained a CI/CD token before.
CVE-2019-15589
An improper access control vulnerability exists in Gitlab <v12.3.2, <v12.2.6, <v12.1.12 which would allow a blocked user would be able to use GIT clone and pull if he had obtained a CI/CD token before.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-15721 An issue was discovered in GitLab Community and Enterprise Edition 10.8 through 12.2.1. An internal endpoint unintentionally allowed group maintainers to view and edit group runner settings. | CVSS3: 5.4 | 1% Низкий | почти 7 лет назад | |
CVE-2019-15721 An issue was discovered in GitLab Community and Enterprise Edition 10.8 through 12.2.1. An internal endpoint unintentionally allowed group maintainers to view and edit group runner settings. | CVSS3: 5.4 | 1% Низкий | почти 7 лет назад | |
CVE-2019-15721 An issue was discovered in GitLab Community and Enterprise Edition 10. ... | CVSS3: 5.4 | 1% Низкий | почти 7 лет назад | |
CVE-2019-15594 GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint. | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15594 GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint. | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15594 GitLab 11.8 and later contains a security vulnerability that allows a ... | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15593 GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments. | CVSS3: 6.5 | 2% Низкий | больше 6 лет назад | |
CVE-2019-15593 GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments. | CVSS3: 6.5 | 2% Низкий | больше 6 лет назад | |
CVE-2019-15593 GitLab 12.2.3 contains a security vulnerability that allows a user to ... | CVSS3: 6.5 | 2% Низкий | больше 6 лет назад | |
CVE-2019-15592 GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline. | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15592 GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline. | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15592 GitLab 12.2.2 and below contains a security vulnerability that allows ... | CVSS3: 4.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15591 An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled. | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15591 An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled. | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15591 An improper access control vulnerability exists in GitLab <12.3.3 that ... | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15590 An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edition (EE) where private merge requests and issues would be disclosed with the Group Search feature provided by Elasticsearch integration | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15590 An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edition (EE) where private merge requests and issues would be disclosed with the Group Search feature provided by Elasticsearch integration | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15590 An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 fo ... | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15589 An improper access control vulnerability exists in Gitlab <v12.3.2, <v12.2.6, <v12.1.12 which would allow a blocked user would be able to use GIT clone and pull if he had obtained a CI/CD token before. | CVSS3: 8.8 | 1% Низкий | больше 6 лет назад | |
CVE-2019-15589 An improper access control vulnerability exists in Gitlab <v12.3.2, <v12.2.6, <v12.1.12 which would allow a blocked user would be able to use GIT clone and pull if he had obtained a CI/CD token before. | CVSS3: 8.8 | 1% Низкий | больше 6 лет назад |
Уязвимостей на страницу