CVE-2018-17939
- EPSS 1.17%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:15
An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the merge request JSON endpoint.
CVE-2018-17975
- EPSS 1.13%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:18
An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via the GFM markdown API.
CVE-2018-17976
- EPSS 1.13%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:19
An issue was discovered in GitLab Community Edition 11.x before 11.1.8, 11.2.x before 11.2.5, and 11.3.x before 11.3.2. There is Information Exposure via Epic change descriptions.
CVE-2018-18640
- EPSS 1.16%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:16
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has Information Exposure Through Browser Caching.
CVE-2018-18641
- EPSS 0.93%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:16
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has Cleartext Storage of Sensitive Information.
CVE-2018-18642
- EPSS 0.81%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:17
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has XSS.
CVE-2018-18644
- EPSS 1.16%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:17
An issue was discovered in GitLab Community and Enterprise Edition 11.x before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It allows Information Exposure via a Gitlab Prometheus integration.
CVE-2018-18645
- EPSS 1.05%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:17
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It allows for Information Exposure via unsubscribe links in email replies.
CVE-2018-18646
- EPSS 1.19%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:17
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It allows SSRF.
CVE-2018-18647
- EPSS 0.82%
- Veröffentlicht 04.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:17
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has Missing Authorization.