Vulnerabilities > Gitlab > Gitlab > 10.5.0

DATE CVE VULNERABILITY TITLE RISK
2018-10-03 CVE-2018-16049 Information Exposure Through Log Files vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 11.0.6, 11.1.x before 11.1.5, and 11.2.x before 11.2.2.
network
low complexity
gitlab CWE-532
5.0
2018-10-03 CVE-2018-16048 Missing Authorization vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 11.0.6, 11.1.x before 11.1.5, and 11.2.x before 11.2.2.
network
low complexity
gitlab CWE-862
4.0
2018-08-03 CVE-2018-12607 Cross-site Scripting vulnerability in Gitlab
An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1.
network
gitlab CWE-79
3.5
2018-08-03 CVE-2018-12606 Cross-site Scripting vulnerability in Gitlab
An issue was discovered in GitLab Community Edition and Enterprise Edition before 10.7.6, 10.8.x before 10.8.5, and 11.x before 11.0.1.
network
gitlab CWE-79
3.5
2018-07-27 CVE-2018-14606 Cross-site Scripting vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 10.8.7, 11.0.x before 11.0.5, and 11.1.x before 11.1.2.
network
gitlab CWE-79
3.5
2018-07-27 CVE-2018-14605 Cross-site Scripting vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 10.8.7, 11.0.x before 11.0.5, and 11.1.x before 11.1.2.
network
gitlab CWE-79
3.5
2018-07-27 CVE-2018-14604 Cross-site Scripting vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 10.8.7, 11.0.x before 11.0.5, and 11.1.x before 11.1.2.
network
gitlab CWE-79
4.3
2018-07-27 CVE-2018-14603 Cross-Site Request Forgery (CSRF) vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 10.8.7, 11.0.x before 11.0.5, and 11.1.x before 11.1.2.
network
gitlab CWE-352
6.8
2018-07-27 CVE-2018-14602 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 10.8.7, 11.0.x before 11.0.5, and 11.1.x before 11.1.2.
network
low complexity
gitlab CWE-200
5.0
2018-07-18 CVE-2018-14364 Path Traversal vulnerability in Gitlab
GitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 10.8.6, and 11.x before 11.0.4 allows Directory Traversal with write access and resultant remote code execution via the GitLab projects import component.
network
low complexity
gitlab CWE-22
7.5