CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Vendor: gitlab
1,044 result(s) · page 30 of 53
CVE-2022-0172
MEDIUM

An issue has been discovered in GitLab CE/EE affecting all versions starting with 12.3. Under certain conditions it was possible to bypass the IP restriction for public projects th...

CVSS 6.5 Gitlab gitlab 2022-01-18
CVE-2022-0090
MEDIUM

An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. GitLab is configured in a way that it doesn't igno...

CVSS 6.5 Gitlab gitlab 2022-01-18
CVE-2021-39942
MEDIUM

A denial of service vulnerability in GitLab CE/EE affecting all versions starting from 12.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from...

CVSS 6.5 Gitlab gitlab 2022-01-18
CVE-2021-39946
MEDIUM

Improper neutralization of user input in GitLab CE/EE versions 14.3 to 14.3.6, 14.4 to 14.4.4, and 14.5 to 14.5.2 allowed an attacker to exploit XSS by abusing the generation of th...

CVSS 5.4 Gitlab gitlab 2022-01-18
CVE-2021-39937
HIGH

A collision in access memoization logic in all versions of GitLab CE/EE before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2,...

CVSS 8.8 Gitlab gitlab 2021-12-13
CVE-2021-39935
KEV HIGH

An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.5 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5...

CVSS 7.5 Gitlab gitlab 2021-12-13
CVE-2021-39944
HIGH

An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5...

CVSS 7.1 Gitlab gitlab 2021-12-13
CVE-2021-39933
MEDIUM

An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.10 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14....

CVSS 6.5 Gitlab gitlab 2021-12-13
CVE-2021-39938
MEDIUM

A vulnerable regular expression pattern in GitLab CE/EE since version 8.15 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5...

CVSS 6.5 Gitlab gitlab 2021-12-13
CVE-2021-39939
MEDIUM

An uncontrolled resource consumption vulnerability in GitLab Runner affecting all versions starting from 13.7 before 14.3.6, all versions starting from 14.4 before 14.4.4, all vers...

CVSS 6.5 Gitlab gitlab 2021-12-13
CVE-2021-39940
MEDIUM

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5...

CVSS 6.5 Gitlab gitlab 2021-12-13
CVE-2021-39941
MEDIUM

An information disclosure vulnerability in GitLab CE/EE versions 12.0 to 14.3.6, 14.4 to 14.4.4, and 14.5 to 14.5.2 allowed non-project members to see the default branch name for p...

CVSS 5.3 Gitlab gitlab 2021-12-13
CVE-2021-39917
MEDIUM

An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.9 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5...

CVSS 6.5 Gitlab gitlab 2021-12-13
CVE-2021-39915
MEDIUM

Improper access control in the GraphQL API in GitLab CE/EE affecting all versions starting from 13.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions star...

CVSS 5.3 Gitlab gitlab 2021-12-13
CVE-2021-39890
CRITICAL

It was possible to bypass 2FA for LDAP users and access some specific pages with Basic Authentication in GitLab 14.1.1 and above.

CVSS 9.8 Gitlab gitlab 2021-12-06
CVE-2021-22170
HIGH

Assuming a database breach, nonce reuse issues in GitLab 11.6+ allows an attacker to decrypt some of the database's encrypted content

CVSS 7.5 Gitlab gitlab 2021-12-06
CVE-2021-39913
MEDIUM

Accidental logging of system root password in the migration log in all versions of GitLab CE/EE before 14.2.6, all versions starting from 14.3 before 14.3.4, and all versions start...

CVSS 6.7 Gitlab gitlab 2021-11-05
CVE-2021-39907
MEDIUM

A potential DOS vulnerability was discovered in GitLab CE/EE starting with version 13.7. The stripping of EXIF data from certain images resulted in high CPU usage.

CVSS 5.3 Gitlab gitlab 2021-11-05
CVE-2021-39909
MEDIUM

Lack of email address ownership verification in the CODEOWNERS feature in all versions of GitLab EE starting from 11.3 before 14.2.6, all versions starting from 14.3 before 14.3.4,...

CVSS 5.3 Gitlab gitlab 2021-11-05
CVE-2021-39912
MEDIUM

A potential DoS vulnerability was discovered in GitLab CE/EE starting with version 13.7. Using a malformed TIFF images was possible to trigger memory exhaustion.

CVSS 5.3 Gitlab gitlab 2021-11-05
1 28 29 30 31 32 53
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.