Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5 943

Количество 5 943

nvd логотип

CVE-2019-11544

почти 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 8.x, 9.x, 10.x, and 11.x before 11.8.9, 11.9.x before 11.9.10, and 11.10.x before 11.10.2. It allows Information Disclosure. Non-member users who subscribe to notifications of an internal project with issue and repository restrictions will receive emails about restricted events.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2019-11544

почти 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition 8.x ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2019-11000

около 7 лет назад

An issue was discovered in GitLab Enterprise Edition before 11.7.11, 11.8.x before 11.8.7, and 11.9.x before 11.9.7. It allows Information Disclosure.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2019-11000

около 7 лет назад

An issue was discovered in GitLab Enterprise Edition before 11.7.11, 11.8.x before 11.8.7, and 11.9.x before 11.9.7. It allows Information Disclosure.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2019-11000

около 7 лет назад

An issue was discovered in GitLab Enterprise Edition before 11.7.11, 1 ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2019-10640

около 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.7.10, 11.8.x before 11.8.6, and 11.9.x before 11.9.4. A regex input validation issue for the .gitlab-ci.yml refs value allows Uncontrolled Resource Consumption.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-10640

около 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition before 11.7.10, 11.8.x before 11.8.6, and 11.9.x before 11.9.4. A regex input validation issue for the .gitlab-ci.yml refs value allows Uncontrolled Resource Consumption.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-10640

около 7 лет назад

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-10301

больше 7 лет назад

A missing permission check in Jenkins GitLab Plugin 1.5.11 and earlier in the GitLabConnectionConfig#doTestConnection form validation method allowed attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2019-10300

больше 7 лет назад

A cross-site request forgery vulnerability in Jenkins GitLab Plugin 1.5.11 and earlier in the GitLabConnectionConfig#doTestConnection form validation method allowed attackers to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.

CVSS3: 8
EPSS: Низкий
ubuntu логотип

CVE-2019-10117

около 7 лет назад

An Open Redirect issue was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. A redirect is triggered after successful authentication within the Oauth/:GeoAuthController for the secondary Geo node.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2019-10117

около 7 лет назад

An Open Redirect issue was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. A redirect is triggered after successful authentication within the Oauth/:GeoAuthController for the secondary Geo node.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2019-10117

около 7 лет назад

An Open Redirect issue was discovered in GitLab Community and Enterpri ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2019-10116

около 7 лет назад

An Insecure Permissions issue (issue 3 of 3) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. Guests of a project were allowed to see Related Branches created for an issue.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2019-10116

около 7 лет назад

An Insecure Permissions issue (issue 3 of 3) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. Guests of a project were allowed to see Related Branches created for an issue.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2019-10116

около 7 лет назад

An Insecure Permissions issue (issue 3 of 3) was discovered in GitLab ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2019-10115

около 7 лет назад

An Insecure Permissions issue (issue 2 of 3) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. The GitLab Releases feature could allow guest users access to private information like release details and code information.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2019-10115

около 7 лет назад

An Insecure Permissions issue (issue 2 of 3) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. The GitLab Releases feature could allow guest users access to private information like release details and code information.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2019-10115

около 7 лет назад

An Insecure Permissions issue (issue 2 of 3) was discovered in GitLab ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2019-10114

около 7 лет назад

An Information Exposure issue (issue 2 of 2) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. During the OAuth authentication process, the application attempts to validate a parameter in an insecure way, potentially exposing data.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-11544

An issue was discovered in GitLab Community and Enterprise Edition 8.x, 9.x, 10.x, and 11.x before 11.8.9, 11.9.x before 11.9.10, and 11.10.x before 11.10.2. It allows Information Disclosure. Non-member users who subscribe to notifications of an internal project with issue and repository restrictions will receive emails about restricted events.

CVSS3: 4.3
1%
Низкий
почти 7 лет назад
debian логотип
CVE-2019-11544

An issue was discovered in GitLab Community and Enterprise Edition 8.x ...

CVSS3: 4.3
1%
Низкий
почти 7 лет назад
ubuntu логотип
CVE-2019-11000

An issue was discovered in GitLab Enterprise Edition before 11.7.11, 11.8.x before 11.8.7, and 11.9.x before 11.9.7. It allows Information Disclosure.

CVSS3: 6.5
2%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-11000

An issue was discovered in GitLab Enterprise Edition before 11.7.11, 11.8.x before 11.8.7, and 11.9.x before 11.9.7. It allows Information Disclosure.

CVSS3: 6.5
2%
Низкий
около 7 лет назад
debian логотип
CVE-2019-11000

An issue was discovered in GitLab Enterprise Edition before 11.7.11, 1 ...

CVSS3: 6.5
2%
Низкий
около 7 лет назад
ubuntu логотип
CVE-2019-10640

An issue was discovered in GitLab Community and Enterprise Edition before 11.7.10, 11.8.x before 11.8.6, and 11.9.x before 11.9.4. A regex input validation issue for the .gitlab-ci.yml refs value allows Uncontrolled Resource Consumption.

CVSS3: 7.5
2%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-10640

An issue was discovered in GitLab Community and Enterprise Edition before 11.7.10, 11.8.x before 11.8.6, and 11.9.x before 11.9.4. A regex input validation issue for the .gitlab-ci.yml refs value allows Uncontrolled Resource Consumption.

CVSS3: 7.5
2%
Низкий
около 7 лет назад
debian логотип
CVE-2019-10640

An issue was discovered in GitLab Community and Enterprise Edition bef ...

CVSS3: 7.5
2%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-10301

A missing permission check in Jenkins GitLab Plugin 1.5.11 and earlier in the GitLabConnectionConfig#doTestConnection form validation method allowed attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.

CVSS3: 8.8
1%
Низкий
больше 7 лет назад
nvd логотип
CVE-2019-10300

A cross-site request forgery vulnerability in Jenkins GitLab Plugin 1.5.11 and earlier in the GitLabConnectionConfig#doTestConnection form validation method allowed attackers to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.

CVSS3: 8
1%
Низкий
больше 7 лет назад
ubuntu логотип
CVE-2019-10117

An Open Redirect issue was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. A redirect is triggered after successful authentication within the Oauth/:GeoAuthController for the secondary Geo node.

CVSS3: 6.1
1%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-10117

An Open Redirect issue was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. A redirect is triggered after successful authentication within the Oauth/:GeoAuthController for the secondary Geo node.

CVSS3: 6.1
1%
Низкий
около 7 лет назад
debian логотип
CVE-2019-10117

An Open Redirect issue was discovered in GitLab Community and Enterpri ...

CVSS3: 6.1
1%
Низкий
около 7 лет назад
ubuntu логотип
CVE-2019-10116

An Insecure Permissions issue (issue 3 of 3) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. Guests of a project were allowed to see Related Branches created for an issue.

CVSS3: 4.3
1%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-10116

An Insecure Permissions issue (issue 3 of 3) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. Guests of a project were allowed to see Related Branches created for an issue.

CVSS3: 4.3
1%
Низкий
около 7 лет назад
debian логотип
CVE-2019-10116

An Insecure Permissions issue (issue 3 of 3) was discovered in GitLab ...

CVSS3: 4.3
1%
Низкий
около 7 лет назад
ubuntu логотип
CVE-2019-10115

An Insecure Permissions issue (issue 2 of 3) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. The GitLab Releases feature could allow guest users access to private information like release details and code information.

CVSS3: 6.5
1%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-10115

An Insecure Permissions issue (issue 2 of 3) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. The GitLab Releases feature could allow guest users access to private information like release details and code information.

CVSS3: 6.5
1%
Низкий
около 7 лет назад
debian логотип
CVE-2019-10115

An Insecure Permissions issue (issue 2 of 3) was discovered in GitLab ...

CVSS3: 6.5
1%
Низкий
около 7 лет назад
ubuntu логотип
CVE-2019-10114

An Information Exposure issue (issue 2 of 2) was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. During the OAuth authentication process, the application attempts to validate a parameter in an insecure way, potentially exposing data.

CVSS3: 7.5
2%
Низкий
около 7 лет назад

Уязвимостей на страницу