CVE-2026-6063
- EPSS 0.19%
- Veröffentlicht 14.05.2026 05:34:12
- Zuletzt bearbeitet 16.05.2026 03:34:11
GitLab has remediated an issue in GitLab EE affecting all versions from 11.10 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that under certain conditions could have allowed an authenticated user with developer-role permissions to remo...
CVE-2026-6073
- EPSS 0.19%
- Veröffentlicht 14.05.2026 05:34:07
- Zuletzt bearbeitet 16.05.2026 03:33:51
GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user to execute arbitrary JavaScript in other users' browsers due to i...
CVE-2026-6335
- EPSS 0.19%
- Veröffentlicht 14.05.2026 05:33:57
- Zuletzt bearbeitet 15.05.2026 19:54:51
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.3 that under certain conditions could have allowed an authenticated user to execute arbitrary code in another user's browser session due to improper sanitiz...
CVE-2026-6883
- EPSS 0.15%
- Veröffentlicht 14.05.2026 05:33:52
- Zuletzt bearbeitet 16.05.2026 03:33:30
GitLab has remediated an issue in GitLab EE affecting all versions from 15.7 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user to bypass merge request approval requirements due to improper cle...
CVE-2026-7377
- EPSS 0.26%
- Veröffentlicht 14.05.2026 05:33:42
- Zuletzt bearbeitet 16.05.2026 03:33:03
GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that, in customizable analytics dashboards, could have allowed an authenticated user to execute arbitrary JavaS...
CVE-2026-7471
- EPSS 0.17%
- Veröffentlicht 14.05.2026 05:33:37
- Zuletzt bearbeitet 14.05.2026 18:50:47
GitLab has remediated an issue in GitLab EE affecting all versions from 18.8 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with control of a virtual registry upstream to make requests to i...
CVE-2026-7481
- EPSS 0.26%
- Veröffentlicht 14.05.2026 05:33:32
- Zuletzt bearbeitet 14.05.2026 18:50:42
GitLab has remediated an issue in GitLab EE affecting all versions from 16.4 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with developer-role permissions to execute arbitrary JavaScript i...
CVE-2026-8280
- EPSS 0.3%
- Veröffentlicht 14.05.2026 05:33:22
- Zuletzt bearbeitet 14.05.2026 18:50:20
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.3 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user to cause denial of service through excessive memory consumption...
CVE-2026-8144
- EPSS 0.18%
- Veröffentlicht 14.05.2026 05:33:17
- Zuletzt bearbeitet 14.05.2026 18:50:26
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.1 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with project membership to enumerate private group members due...
CVE-2026-3254
- EPSS 0.15%
- Veröffentlicht 22.04.2026 16:29:48
- Zuletzt bearbeitet 23.04.2026 20:43:26
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.1 that under certain conditions could have allowed an authenticated user to load unauthorized content into another user's browser due to improper input vali...