CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Vendor: gitlab
1,044 result(s) · page 28 of 53
CVE-2022-1680
HIGH

An account takeover issue has been discovered in GitLab EE affecting all versions starting from 11.10 before 14.9.5, all versions starting from 14.10 before 14.10.4, all versions s...

CVSS 8.8 Gitlab gitlab 2022-06-06
CVE-2022-1944
HIGH

When the feature is configured, improper authorization in the Interactive Web Terminal in GitLab CE/EE affecting all versions from 11.3 prior to 14.9.5, 14.10 prior to 14.10.4, and...

CVSS 7.1 Gitlab gitlab 2022-06-06
CVE-2022-1935
MEDIUM

Incorrect authorization in GitLab EE affecting all versions from 12.0 before 14.9.5, all versions starting from 14.10 before 14.10.4, all versions starting from 15.0 before 15.0.1 ...

CVSS 6.5 Gitlab gitlab 2022-06-06
CVE-2022-1936
MEDIUM

Incorrect authorization in GitLab EE affecting all versions from 12.0 before 14.9.5, all versions starting from 14.10 before 14.10.4, all versions starting from 15.0 before 15.0.1 ...

CVSS 6.5 Gitlab gitlab 2022-06-06
CVE-2022-1940
MEDIUM

A Stored Cross-Site Scripting vulnerability in Jira integration in GitLab EE affecting all versions from 13.11 prior to 14.9.5, 14.10 prior to 14.10.4, and 15.0 prior to 15.0.1 all...

CVSS 5.4 Gitlab gitlab 2022-06-06
CVE-2021-39947
HIGH

In specific circumstances, trace file buffers in GitLab Runner versions up to 14.3.4, 14.4 to 14.4.2, and 14.5 to 14.5.2 would re-use the file descriptor 0 for multiple traces and ...

CVSS 7.5 Gitlab gitlab_runner 2022-06-06
CVE-2022-1423
HIGH

Improper access control in the CI/CD cache mechanism in GitLab CE/EE affecting all versions starting from 1.0.2 before 14.8.6, all versions from 14.9.0 before 14.9.4, and all versi...

CVSS 8.8 Gitlab gitlab 2022-05-19
CVE-2022-1413
HIGH

Missing input masking in GitLab CE/EE affecting all versions starting from 1.0.2 before 14.8.6, all versions from 14.9.0 before 14.9.4, and all versions from 14.10.0 before 14.10.1...

CVSS 7.5 Gitlab gitlab 2022-05-19
CVE-2022-1416
MEDIUM

Missing sanitization of data in Pipeline error messages in GitLab CE/EE affecting all versions starting from 1.0.2 before 14.8.6, all versions from 14.9.0 before 14.9.4, and all ve...

CVSS 5.4 Gitlab gitlab 2022-05-19
CVE-2022-1510
HIGH

An issue has been discovered in GitLab affecting all versions starting from 13.9 before 14.8.6, all versions starting from 14.9 before 14.9.4, all versions starting from 14.10 befo...

CVSS 7.5 Gitlab gitlab 2022-05-11
CVE-2022-1433
MEDIUM

An issue has been discovered in GitLab affecting all versions starting from 14.4 before 14.8.6, all versions starting from 14.9 before 14.9.4, all versions starting from 14.10 befo...

CVSS 6.1 Gitlab gitlab 2022-05-11
CVE-2022-1406
MEDIUM

Improper input validation in GitLab CE/EE affecting all versions from 8.12 prior to 14.8.6, all versions from 14.9.0 prior to 14.9.4, and 14.10.0 allows a Developer to read protect...

CVSS 6.5 Gitlab gitlab 2022-05-11
CVE-2022-1352
MEDIUM

Due to an insecure direct object reference vulnerability in Gitlab EE/CE affecting all versions from 11.0 prior to 14.8.6, 14.9 prior to 14.9.4, and 14.10 prior to 14.10.1, an endp...

CVSS 5.3 Gitlab gitlab 2022-05-11
CVE-2022-1431
MEDIUM

An issue has been discovered in GitLab affecting all versions starting from 12.10 before 14.8.6, all versions starting from 14.9 before 14.9.4, all versions starting from 14.10 bef...

CVSS 5.3 Gitlab gitlab 2022-05-10
CVE-2022-1185
MEDIUM

A denial of service vulnerability when rendering RDoc files in GitLab CE/EE versions 10 to 14.7.7, 14.8.0 to 14.8.5, and 14.9.0 to 14.9.2 allows an attacker to crash the GitLab web...

CVSS 6.5 Gitlab gitlab 2022-04-04
CVE-2022-1175
MEDIUM

Improper neutralization of user input in GitLab CE/EE versions 14.4 before 14.7.7, all versions starting from 14.8 before 14.8.5, all versions starting from 14.9 before 14.9.2 allo...

CVSS 6.1 Gitlab gitlab 2022-04-04
CVE-2022-1190
MEDIUM

Improper handling of user input in GitLab CE/EE versions 8.3 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 allowed an attacker to exploit a stored XSS by abusing ...

CVSS 5.4 Gitlab gitlab 2022-04-04
CVE-2022-1188
MEDIUM

An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.1 before 14.7.7, all versions starting from 14.8 before 14.8.5, all versions starting from 14.9...

CVSS 5.3 Gitlab gitlab 2022-04-04
CVE-2022-1162
CRITICAL

A hardcoded password was set for accounts registered using an OmniAuth provider (e.g. OAuth, LDAP, SAML) in GitLab CE/EE versions 14.7 prior to 14.7.7, 14.8 prior to 14.8.5, and 14...

CVSS 9.8 Gitlab gitlab 2022-04-04
CVE-2022-1174
HIGH

A potential DoS vulnerability was discovered in Gitlab CE/EE versions 13.7 before 14.7.7, all versions starting from 14.8 before 14.8.5, all versions starting from 14.9 before 14.9...

CVSS 7.5 Gitlab gitlab 2022-04-04
1 26 27 28 29 30 53
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.