CVE-2022-3483
- EPSS 0.67%
- Veröffentlicht 09.11.2022 23:15:14
- Zuletzt bearbeitet 21.11.2024 07:19:37
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.1 before 15.3.5, all versions starting from 15.4 before 15.4.4, all versions starting from 15.5 before 15.5.2. A malicious maintainer could exfiltrate a Datadog inte...
CVE-2022-3486
- EPSS 0.74%
- Veröffentlicht 09.11.2022 23:15:14
- Zuletzt bearbeitet 01.05.2025 20:15:33
An open redirect vulnerability in GitLab EE/CE affecting all versions from 9.3 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2, allows an attacker to redirect users to an arbitrary location if they trust the URL.
CVE-2022-3265
- EPSS 86.33%
- Veröffentlicht 09.11.2022 23:15:13
- Zuletzt bearbeitet 01.05.2025 20:15:32
A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2. It was possible to exploit a vulnerability in setting the labels colour feature which could lead ...
CVE-2022-3280
- EPSS 0.54%
- Veröffentlicht 09.11.2022 23:15:13
- Zuletzt bearbeitet 01.05.2025 20:15:32
An open redirect in GitLab CE/EE affecting all versions from 10.1 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows an attacker to trick users into visiting a trustworthy URL and being redirected to arbitrary content.
CVE-2022-2761
- EPSS 0.69%
- Veröffentlicht 09.11.2022 23:15:09
- Zuletzt bearbeitet 21.11.2024 07:01:39
An information disclosure issue in GitLab CE/EE affecting all versions from 14.4 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows an attacker to use GitLab Flavored Markdown (GFM) references in a Jira issue to disclose the names...
CVE-2022-2904
- EPSS 0.67%
- Veröffentlicht 02.11.2022 20:15:09
- Zuletzt bearbeitet 02.05.2025 19:15:49
A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions starting from 15.2 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1 It was possible to exploit a vulner...
CVE-2022-2826
- EPSS 0.85%
- Veröffentlicht 28.10.2022 22:15:09
- Zuletzt bearbeitet 07.05.2025 16:15:19
An issue has been discovered in GitLab affecting all versions starting from 10.0 before 12.9.8, all versions starting from 12.10 before 12.10.7, all versions starting from 13.0 before 13.0.1. TODO
CVE-2022-2882
- EPSS 0.69%
- Veröffentlicht 28.10.2022 15:15:15
- Zuletzt bearbeitet 07.05.2025 16:15:20
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.6 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. A malicious maintainer could exfiltrate a GitHub integ...
CVE-2022-3018
- EPSS 0.68%
- Veröffentlicht 28.10.2022 15:15:15
- Zuletzt bearbeitet 07.05.2025 15:15:54
An information disclosure vulnerability in GitLab CE/EE affecting all versions starting from 9.3 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1 allows a project maintainer to access the Dat...
CVE-2022-3639
- EPSS 0.87%
- Veröffentlicht 21.10.2022 16:15:11
- Zuletzt bearbeitet 07.05.2025 15:15:54
A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions from 10.8 before 15.1.6, all versions starting from 15.2 before 15.2.4, all versions starting from 15.3 before 15.3.2. Improper data handling on branch creation could...