Search CVE reports
891 – 900 of 1132 results
In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab EE 8.4 through 12.5, 12.4.3, and 12.3.6 stored several tokens in plaintext.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab EE 12.3 through 12.5, 12.4.3, and 12.3.6 allows Denial of Service. Certain characters were making it impossible to create, edit, or view issues and commits.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab EE 8.14 through 12.5, 12.4.3, and 12.3.6 has Incorrect Access Control. After a project changed to private, previously forked repositories were still able to get information about the private project through the API.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab Enterprise Edition (EE) 9.0 and later through 12.5 allows Information Disclosure.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab Enterprise Edition (EE) 8.90 and later through 12.5 has Incorrect Access Control.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab Enterprise Edition (EE) 8.2 and later through 12.5 has Insecure Permissions.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab Enterprise Edition (EE) 11.9 and later through 12.5 has Insecure Permissions.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab Enterprise Edition (EE) 6.7 and later through 12.5 allows SSRF.
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | — | — | — | Not in release |
GitLab Community Edition (CE) and Enterprise Edition (EE) through 12.5 has Incorrect Access Control (issue 2 of 2).
1 affected package
gitlab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
gitlab | Not in release | Not in release | Not in release | Not in release |