Filtered by vendor Gitlab
Subscriptions
Total
981 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2020-13310 | 1 Gitlab | 1 Gitlab | 2020-09-16 | 6.5 Medium |
A vulnerability was discovered in GitLab runner versions before 13.1.3, 13.2.3 and 13.3.1. It was possible to make the gitlab-runner process crash by sending malformed queries, resulting in a denial of service. | ||||
CVE-2020-13289 | 1 Gitlab | 1 Gitlab | 2020-09-16 | 5.4 Medium |
A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. In certain cases an invalid username could be accepted when 2FA is activated. | ||||
CVE-2020-13287 | 1 Gitlab | 1 Gitlab | 2020-09-16 | 4.3 Medium |
A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. Project reporters and above could see confidential EPIC attached to confidential issues | ||||
CVE-2020-13317 | 1 Gitlab | 1 Gitlab | 2020-09-16 | 4.9 Medium |
A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8, and 13.3.4. An insufficient check in the GraphQL api allowed a maintainer to delete a repository. | ||||
CVE-2020-13313 | 1 Gitlab | 1 Gitlab | 2020-09-16 | 4.3 Medium |
A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. An unauthorized project maintainer could edit the subgroup badges due to the lack of authorization control. | ||||
CVE-2020-13284 | 1 Gitlab | 1 Gitlab | 2020-09-16 | 6.5 Medium |
A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. API Authorization Using Outdated CI Job Token | ||||
CVE-2020-13314 | 1 Gitlab | 1 Gitlab | 2020-09-16 | 5.3 Medium |
A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab Omniauth endpoint allowed a malicious user to submit content to be displayed back to the user within error messages. | ||||
CVE-2019-9224 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control (issue 4 of 5). | ||||
CVE-2019-9890 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition 10.x and 11.x before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Insecure Permissions. | ||||
CVE-2019-9756 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition 10.x (starting from 10.8) and 11.x before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control, a different vulnerability than CVE-2019-9732. | ||||
CVE-2019-9732 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition 10.x (starting from 10.8) and 11.x before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control. | ||||
CVE-2019-9485 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Insecure Permissions. | ||||
CVE-2019-9225 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control (issue 5 of 5). | ||||
CVE-2019-9222 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Insecure Permissions. | ||||
CVE-2019-9220 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It allows Uncontrolled Resource Consumption. | ||||
CVE-2019-9219 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control (issue 2 of 5). | ||||
CVE-2019-9218 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control (issue 1 of 5). | ||||
CVE-2019-9217 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. Its User Interface has a Misrepresentation of Critical Information. | ||||
CVE-2019-9170 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control. | ||||
CVE-2019-7549 | 1 Gitlab | 1 Gitlab | 2020-08-24 | N/A |
An issue was discovered in GitLab Community and Enterprise Edition 10.x and 11.x before 11.5.10, 11.6.x before 11.6.8, and 11.7.x before 11.7.3. It has Incorrect Access Control. The GitLab pipelines feature is vulnerable to authorization issues that allow unauthorized users to view job information. |