CVE-2018-20144
- EPSS 0.29%
- Veröffentlicht 28.03.2019 15:29:00
- Zuletzt bearbeitet 21.11.2024 04:00:56
GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x before 11.4.11, and 11.5.x before 11.5.4 has Incorrect Access Control.
CVE-2018-19856
- EPSS 0.13%
- Veröffentlicht 26.03.2019 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:41
GitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before 11.5.3 allows Directory Traversal in Templates API.
CVE-2019-6240
- EPSS 0.12%
- Veröffentlicht 25.03.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:46:17
An issue was discovered in GitLab Community and Enterprise Edition before 11.4. It allows Directory Traversal.
CVE-2018-17939
- EPSS 0.06%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:15
An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the merge request JSON endpoint.
CVE-2018-17975
- EPSS 0.11%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:18
An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the GFM markdown API.
CVE-2018-17976
- EPSS 0.14%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:19
An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via Epic change descriptions.
CVE-2018-18640
- EPSS 0.11%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:16
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has Information Exposure Through Browser Caching.
CVE-2018-18641
- EPSS 0.06%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:16
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has Cleartext Storage of Sensitive Information.
CVE-2018-18642
- EPSS 0.07%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:17
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has XSS.
CVE-2018-18644
- EPSS 0.11%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:17
An issue was discovered in GitLab Community and Enterprise Edition 11.x before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It allows Information Exposure via a Gitlab Prometheus integration.