CVE-2023-3102
- EPSS 0.37%
- Veröffentlicht 21.07.2023 16:15:10
- Zuletzt bearbeitet 21.11.2024 08:16:27
A sensitive information leak issue has been discovered in GitLab EE affecting all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1, which allows access to titles of private issue and MR.
CVE-2023-3484
- EPSS 0.11%
- Veröffentlicht 21.07.2023 14:15:10
- Zuletzt bearbeitet 21.11.2024 08:17:22
An issue has been discovered in GitLab EE affecting all versions starting from 12.8 before 15.11.11, all versions starting from 16.0 before 16.0.7, all versions starting from 16.1 before 16.1.2. An attacker could change the name or path of a public t...
CVE-2023-3362
- EPSS 0.56%
- Veröffentlicht 13.07.2023 03:15:10
- Zuletzt bearbeitet 20.03.2025 17:00:14
An information disclosure issue in GitLab CE/EE affecting all versions from 16.0 prior to 16.0.6, and version 16.1.0 allows unauthenticated actors to access the import error information if a project was imported from GitHub.
CVE-2023-3363
- EPSS 0.02%
- Veröffentlicht 13.07.2023 03:15:10
- Zuletzt bearbeitet 21.11.2024 08:17:06
An information disclosure issue in Gitlab CE/EE affecting all versions from 13.6 prior to 15.11.10, all versions from 16.0 prior to 16.0.6, all versions from 16.1 prior to 16.1.1, resulted in the Sidekiq log including webhook tokens when the log form...
CVE-2023-3424
- EPSS 0.6%
- Veröffentlicht 13.07.2023 03:15:10
- Zuletzt bearbeitet 21.11.2024 08:17:14
An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.3 before 15.11.10, all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1. A Regular Expression Denial of Service was possible ...
CVE-2023-3444
- EPSS 0.23%
- Veröffentlicht 13.07.2023 03:15:10
- Zuletzt bearbeitet 05.05.2025 14:14:17
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.3 before 15.11.10, all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1, which allows an attacker to merge arbitrary code int...
CVE-2023-2200
- EPSS 0.95%
- Veröffentlicht 13.07.2023 03:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:08
An issue has been discovered in GitLab CE/EE affecting all versions starting from 7.14 before 15.11.10, all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1, which allows an attacker to inject HTML in an email ...
CVE-2023-2576
- EPSS 0.09%
- Veröffentlicht 13.07.2023 03:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:51
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7 before 15.11.10, all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1. This allowed a developer to remove the CODEOWNERS ru...
CVE-2023-2620
- EPSS 0.32%
- Veröffentlicht 13.07.2023 03:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:56
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.1 prior to 15.11.10, all versions from 16.0 prior to 16.0.6, all versions from 16.1 prior to 16.1.1. A maintainer could modify a webhook URL to leak masked webhook s...
CVE-2023-2190
- EPSS 0.13%
- Veröffentlicht 13.07.2023 02:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:06
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.10 before 15.11.10, all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1. It may be possible for users to view new commits to...