Gitlab

GitLab

1271 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.26%
  • Veröffentlicht 17.10.2022 16:15:22
  • Zuletzt bearbeitet 21.11.2024 07:19:21

An issue has been discovered in GitLab EE affecting all versions starting from 13.7 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. A user's primary email may be disclosed to an attacker th...

  • EPSS 0.27%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 13.05.2025 20:15:21

A business logic issue in the handling of large repositories in all versions of GitLab CE/EE from 10.0 before 15.1.6, all versions starting from 15.2 before 15.2.4, all versions starting from 15.3 before 15.3.2 allowed an authenticated and authorized...

  • EPSS 0.5%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 13.05.2025 20:15:21

An issue in Incident Timelines has been discovered in GitLab CE/EE affecting all versions starting from 14.9 before 15.1.6, all versions starting from 15.2 before 15.2.4, all versions starting from 15.3 before 15.3.2.which allowed an authenticated at...

  • EPSS 0.16%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 13.05.2025 20:15:21

An issue has been discovered in GitLab affecting all versions starting from 12.10 before 15.1.6, all versions starting from 15.2 before 15.2.4, all versions starting from 15.3 before 15.3.2. GitLab was not performing correct authentication with some ...

  • EPSS 0.41%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 13.05.2025 20:15:22

A lack of length validation in Snippet descriptions in GitLab CE/EE affecting all versions prior to 15.1.6, 15.2 prior to 15.2.4 and 15.3 prior to 15.3.2 allows an authenticated attacker to create a maliciously large Snippet which when requested with...

  • EPSS 0.25%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 13.05.2025 20:15:22

An improper access control issue in GitLab CE/EE affecting all versions starting from 15.2 before 15.2.4, all versions from 15.3 before 15.3.2 allows disclosure of confidential information via the Incident timeline events.

  • EPSS 0.44%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 14.05.2025 14:15:23

A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions before 15.1.6, 15.2 to 15.2.4 and 15.3 prior to 15.3.2. It was possible to exploit a vulnerability in setting the labels colour feature which could lead to a stor...

  • EPSS 73.11%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 14.05.2025 15:15:48

A vulnerability in GitLab CE/EE affecting all versions from 11.3.4 prior to 15.1.5, 15.2 to 15.2.3, 15.3 to 15.3 to 15.3.1 allows an an authenticated user to achieve remote code execution via the Import from GitHub API endpoint

  • EPSS 0.26%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 13.05.2025 20:15:22

A potential DoS vulnerability was discovered in Gitlab CE/EE versions starting from 10.7 before 15.1.5, all versions starting from 15.2 before 15.2.3, all versions starting from 15.3 before 15.3.1 allowed an attacker to trigger high CPU usage via a s...

  • EPSS 0.29%
  • Veröffentlicht 17.10.2022 16:15:21
  • Zuletzt bearbeitet 13.05.2025 17:15:48

A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before 15.1.6, all versions starting from 15.2 before 15.2.4, all versions starting from 15.3 before 15.3.2. Malformed content added to the issue description could ha...