İçeriğe atla
Noroxi

This vulnerability has been discovered internally by the GitLab team.

105 kredili kayıt · son 12 ayda 0 · 0 tanesi CISA KEV’de

Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.

Kredili kayıtlar

Araştırmacılar
  • CVE-2022-3767
    26İzleyin

    Missing validation in DAST analyzer affecting all versions from 1.11.0 prior to 3.0.32, allows custom request headers to be sent with every

    OrtaCVSS 6,5İstismar yokEPSS %1

    gitlab · dynamic application security testing analyzer9 Mar 2023

  • CVE-2022-4206
    26İzleyin

    A sensitive information leak issue has been discovered in all versions of DAST API scanner from 1.6.50 prior to 2.0.102, exposing the Author

    OrtaCVSS 6,5İstismar yokEPSS %1

    gitlab · dast api scanner31 Oca 2023

  • CVE-2022-4255
    21İzleyin

    An info leak issue was identified in all versions of GitLab EE from 13.7 prior to 15.4.6, 15.5 prior to 15.5.5, and 15.6 prior to 15.6.1 whi

    OrtaCVSS 5,3İstismar yokEPSS %0

    gitlab · gitlab27 Oca 2023

  • CVE-2022-4205
    30İzleyin

    In Gitlab EE/CE before 15.6.1, 15.5.5 and 15.4.6 using a branch with a hexadecimal name could override an existing hash.

    YüksekCVSS 7,5İstismar yokEPSS %1

    gitlab · gitlab27 Oca 2023

  • CVE-2022-4201
    21İzleyin

    A blind SSRF in GitLab CE/EE affecting all from 11.3 prior to 15.4.6, 15.5 prior to 15.5.5, and 15.6 prior to 15.6.1 allows an attacker to c

    OrtaCVSS 5,3İstismar yokEPSS %1

    gitlab · gitlab27 Oca 2023

  • CVE-2022-3820
    26İzleyin

    An issue has been discovered in GitLab affecting all versions starting from 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2.

    OrtaCVSS 6,5İstismar yokEPSS %1

    gitlab · gitlab26 Oca 2023

  • CVE-2022-3819
    17İzleyin

    An improper authorization issue in GitLab CE/EE affecting all versions from 15.0 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15

    OrtaCVSS 4,3İstismar yokEPSS %0

    gitlab · gitlab9 Kas 2022

  • CVE-2022-3818
    21İzleyin

    An uncontrolled resource consumption issue when parsing URLs in GitLab CE/EE affecting all versions prior to 15.3.5, 15.4 prior to 15.4.4, a

    OrtaCVSS 5,3İstismar yokEPSS %1

    gitlab · gitlab9 Kas 2022

  • CVE-2022-3793
    21İzleyin

    An improper authorization issue in GitLab CE/EE affecting all versions from 14.4 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15

    OrtaCVSS 5,3İstismar yokEPSS %1

    gitlab · gitlab9 Kas 2022

  • CVE-2022-3706
    17İzleyin

    Improper authorization in GitLab CE/EE affecting all versions from 7.14 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allo

    OrtaCVSS 4,3İstismar yokEPSS %1

    gitlab · gitlab9 Kas 2022

  • CVE-2022-3413
    17İzleyin

    Incorrect authorization during display of Audit Events in GitLab EE affecting all versions from 14.5 prior to 15.3.5, 15.4 prior to 15.4.4,

    OrtaCVSS 4,3İstismar yokEPSS %0

    gitlab · gitlab9 Kas 2022

  • CVE-2022-3285
    30İzleyin

    Bypass of healthcheck endpoint allow list affecting all versions from 12.0 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 a

    YüksekCVSS 7,5İstismar yokEPSS %1

    gitlab · gitlab9 Kas 2022

  • CVE-2022-3018
    19İzleyin

    An information disclosure vulnerability in GitLab CE/EE affecting all versions starting from 9.3 before 15.2.5, all versions starting from 1

    OrtaCVSS 4,9İstismar yokEPSS %1

    gitlab · gitlab28 Eki 2022

  • CVE-2022-3330
    17İzleyin

    It was possible for a guest user to read a todo targeting an inaccessible note in Gitlab CE/EE affecting all versions from 15.0 prior to 15.

    OrtaCVSS 4,3İstismar yokEPSS %1

    gitlab · gitlab17 Eki 2022

  • CVE-2022-3325
    17İzleyin

    Improper access control in the GitLab CE/EE API affecting all versions starting from 12.8 before 15.2.5, all versions starting from 15.3 bef

    OrtaCVSS 4,3İstismar yokEPSS %0

    gitlab · gitlab17 Eki 2022

  • CVE-2022-3293
    17İzleyin

    Email addresses were leaked in WebHook logs in GitLab EE affecting all versions from 9.3 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 pri

    OrtaCVSS 4,3İstismar yokEPSS %1

    gitlab · gitlab17 Eki 2022

  • CVE-2022-3291
    26İzleyin

    Serialization of sensitive data in GitLab EE affecting all versions from 14.9 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.

    OrtaCVSS 6,5İstismar yokEPSS %1

    gitlab · gitlab17 Eki 2022

  • CVE-2022-3286
    21İzleyin

    Lack of IP address checking in GitLab EE affecting all versions from 14.2 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 al

    OrtaCVSS 5,3İstismar yokEPSS %0

    gitlab · gitlab17 Eki 2022

  • CVE-2022-2533
    29İzleyin

    An issue has been discovered in GitLab affecting all versions starting from 12.10 before 15.1.6, all versions starting from 15.2 before 15.2

    YüksekCVSS 7,4İstismar yokEPSS %1

    gitlab · gitlab17 Eki 2022

  • CVE-2022-2539
    21İzleyin

    An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.6 prior to 15.0.5, 15.1 prior to 15.1.4, and 15.2 prior

    OrtaCVSS 5,3İstismar yokEPSS %1

    gitlab · gitlab5 Ağu 2022

  • CVE-2022-2534
    21İzleyin

    An issue has been discovered in GitLab CE/EE affecting all versions starting from 9.3 before 15.0.5, all versions starting from 15.1 before

    OrtaCVSS 5,3İstismar yokEPSS %1

    gitlab · gitlab5 Ağu 2022

  • CVE-2022-2512
    26İzleyin

    An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 before 15.0.5, all versions starting from 15.1 before

    OrtaCVSS 6,5İstismar yokEPSS %1

    gitlab · gitlab5 Ağu 2022

  • CVE-2022-2417
    18İzleyin

    Insufficient validation in GitLab CE/EE affecting all versions from 12.10 prior to 15.0.5, 15.1 prior to 15.1.4, and 15.2 prior to 15.2.1 al

    OrtaCVSS 4,5İstismar yokEPSS %1

    gitlab · gitlab5 Ağu 2022

  • CVE-2022-0167
    24İzleyin

    An issue has been discovered in GitLab affecting all versions starting from 14.0 before 14.4.5, all versions starting from 14.5.0 before 14.

    OrtaCVSS 6,1İstismar yokEPSS %1

    gitlab · gitlab1 Tem 2022

  • CVE-2022-2228
    26İzleyin

    Information exposure in GitLab EE affecting all versions from 12.0 prior to 14.10.5, 15.0 prior to 15.0.4, and 15.1 prior to 15.1.1 allows a

    OrtaCVSS 6,5İstismar yokEPSS %1

    gitlab · gitlab1 Tem 2022