Vulnerabilities > Gitlab > Gitlab > 11.10.5

DATE CVE VULNERABILITY TITLE RISK
2019-11-26 CVE-2019-18457 Improper Preservation of Permissions vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 11.8 through 12.4 when handling Security tokens..
network
low complexity
gitlab CWE-281
6.5
2019-11-26 CVE-2019-18463 Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition through 12.4.
network
low complexity
gitlab CWE-732
4.0
2019-11-26 CVE-2019-18462 Improper Privilege Management vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.4.
network
low complexity
gitlab CWE-269
4.0
2019-11-26 CVE-2019-18461 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.3 when a sub group epic is added to a public group.
network
low complexity
gitlab CWE-200
4.0
2019-11-26 CVE-2019-18460 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.4 in the Comments Search feature provided by the Elasticsearch integration.
network
low complexity
gitlab CWE-200
5.0
2019-09-17 CVE-2019-15729 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 8.18 through 12.2.1.
network
low complexity
gitlab CWE-200
5.0
2019-09-16 CVE-2019-15740 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 7.9 through 12.2.1.
network
low complexity
gitlab CWE-200
5.0
2019-09-16 CVE-2019-15739 Cross-site Scripting vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 8.1 through 12.2.1.
network
gitlab CWE-79
4.3
2019-09-16 CVE-2019-15737 Unspecified vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1.
network
low complexity
gitlab
6.4
2019-09-16 CVE-2019-15736 Allocation of Resources Without Limits or Throttling vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1.
network
low complexity
gitlab CWE-770
5.0