Vulnerabilities > Gitlab > Gitlab > 11.8.9

DATE CVE VULNERABILITY TITLE RISK
2020-03-10 CVE-2019-12431 Unspecified vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 8.13 through 11.11.
network
low complexity
gitlab
4.0
2020-03-10 CVE-2019-12428 Unspecified vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 6.8 through 11.11.
network
low complexity
gitlab
7.5
2020-03-06 CVE-2020-8113 Improper Privilege Management vulnerability in Gitlab
GitLab 10.7 and later through 12.7.2 has Incorrect Access Control.
network
low complexity
gitlab CWE-269
7.5
2020-02-14 CVE-2019-15592 Unspecified vulnerability in Gitlab
GitLab 12.2.2 and below contains a security vulnerability that allows a guest user in a private project to see the merge request ID associated to an issue via the activity timeline.
network
low complexity
gitlab
4.3
2020-02-05 CVE-2020-6833 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab EE 11.3 and later.
network
low complexity
gitlab CWE-200
5.0
2020-02-05 CVE-2020-7977 Incorrect Default Permissions vulnerability in Gitlab
GitLab EE 8.8 and later through 12.7.2 has Insecure Permissions.
network
gitlab CWE-276
4.3
2020-02-05 CVE-2020-7974 Information Exposure vulnerability in Gitlab
GitLab EE 10.1 through 12.7.2 allows Information Disclosure.
network
low complexity
gitlab CWE-200
5.0
2020-02-05 CVE-2020-7973 Cross-site Scripting vulnerability in Gitlab
GitLab through 12.7.2 allows XSS.
network
gitlab CWE-79
4.3
2020-02-05 CVE-2020-7971 Cross-site Scripting vulnerability in Gitlab
GitLab EE 11.0 and later through 12.7.2 allows XSS.
network
gitlab CWE-79
4.3
2020-02-05 CVE-2020-7969 Information Exposure vulnerability in Gitlab
GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure.
network
low complexity
gitlab CWE-200
5.0