Vulnerabilities > Gitlab > Gitlab > 12.1.12

DATE CVE VULNERABILITY TITLE RISK
2020-02-05 CVE-2020-7967 Incorrect Default Permissions vulnerability in Gitlab
GitLab EE 8.0 through 12.7.2 has Insecure Permissions (issue 1 of 2).
network
low complexity
gitlab CWE-276
4.0
2020-02-05 CVE-2020-7966 Path Traversal vulnerability in Gitlab
GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal.
network
low complexity
gitlab CWE-22
5.0
2020-02-05 CVE-2020-8114 Incorrect Default Permissions vulnerability in Gitlab
GitLab EE 8.9 and later through 12.7.2 has Insecure Permission
network
low complexity
gitlab CWE-276
7.5
2020-02-05 CVE-2020-7979 Incorrect Default Permissions vulnerability in Gitlab
GitLab EE 8.9 and later through 12.7.2 has Insecure Permission
network
gitlab CWE-276
4.3
2020-01-28 CVE-2019-15590 Unspecified vulnerability in Gitlab
An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edition (EE) where private merge requests and issues would be disclosed with the Group Search feature provided by Elasticsearch integration
network
low complexity
gitlab
5.0
2020-01-13 CVE-2019-20144 Unspecified vulnerability in Gitlab
An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 10.8 through 12.6.1.
network
low complexity
gitlab
4.0
2020-01-13 CVE-2020-6832 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab Enterprise Edition (EE) 8.9.0 through 12.6.1.
network
low complexity
gitlab CWE-200
5.0
2020-01-13 CVE-2020-5197 Incorrect Authorization vulnerability in Gitlab
An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 5.1 through 12.6.1.
network
gitlab CWE-863
3.5
2020-01-13 CVE-2019-20148 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 8.13 through 12.6.1.
network
gitlab CWE-200
4.3
2020-01-13 CVE-2019-20147 Information Exposure vulnerability in Gitlab
An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 9.1 through 12.6.1.
network
low complexity
gitlab CWE-200
5.0