CVE-2023-2825
- EPSS 92.3%
- Veröffentlicht 26.05.2023 21:15:16
- Zuletzt bearbeitet 15.01.2025 16:15:26
An issue has been discovered in GitLab CE/EE affecting only version 16.0.0. An unauthenticated malicious user can use a path traversal vulnerability to read arbitrary files on the server when an attachment exists in a public project nested within at ...
CVE-2023-2181
- EPSS 0.37%
- Veröffentlicht 12.05.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 07:58:05
An issue has been discovered in GitLab affecting all versions before 15.9.8, 15.10.0 before 15.10.7, and 15.11.0 before 15.11.3. A malicious developer could use a git feature called refs/replace to smuggle content into a merge request which would not...
CVE-2023-2478
- EPSS 0.35%
- Veröffentlicht 08.05.2023 21:15:10
- Zuletzt bearbeitet 29.01.2025 18:15:44
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 before 15.9.7, all versions starting from 15.10 before 15.10.6, all versions starting from 15.11 before 15.11.2. Under certain conditions, a malicious unauthorized...
CVE-2023-2182
- EPSS 0.4%
- Veröffentlicht 03.05.2023 22:15:19
- Zuletzt bearbeitet 21.11.2024 07:58:05
An issue has been discovered in GitLab EE affecting all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions when OpenID Connect is enabled on an instance, it may allow users who are m...
CVE-2023-1178
- EPSS 3.55%
- Veröffentlicht 03.05.2023 22:15:17
- Zuletzt bearbeitet 21.11.2024 07:38:36
An issue has been discovered in GitLab CE/EE affecting all versions from 8.6 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. File integrity may be compromised when source code or instal...
- EPSS 0.22%
- Veröffentlicht 03.05.2023 22:15:16
- Zuletzt bearbeitet 21.11.2024 07:37:45
An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. The main branch of a repository with a specially crafted name allows an att...
CVE-2023-0805
- EPSS 0.06%
- Veröffentlicht 03.05.2023 22:15:16
- Zuletzt bearbeitet 12.02.2025 16:15:34
An issue has been discovered in GitLab EE affecting all versions starting from 15.2 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to have access ...
CVE-2022-4376
- EPSS 0.13%
- Veröffentlicht 03.05.2023 22:15:15
- Zuletzt bearbeitet 21.11.2024 07:35:09
An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Under certain conditions, an attacker may be able to map a private email of...
CVE-2023-2069
- EPSS 0.27%
- Veröffentlicht 03.05.2023 21:15:21
- Zuletzt bearbeitet 21.11.2024 07:57:52
An issue has been discovered in GitLab affecting all versions starting from 10.0 before 12.9.8, all versions starting from 12.10 before 12.10.7, all versions starting from 13.0 before 13.0.1. A user with the role of developer could use the import pro...
CVE-2023-1965
- EPSS 0.06%
- Veröffentlicht 03.05.2023 21:15:18
- Zuletzt bearbeitet 21.11.2024 07:40:14
An issue has been discovered in GitLab EE affecting all versions starting from 14.2 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1. Lack of verification on RelayState parameter allowed ...