Vulnerabilities > Gitlab > Gitlab > 12.3.7
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-01-03 | CVE-2019-19255 | Unspecified vulnerability in Gitlab GitLab Enterprise Edition (EE) 12.3 and later through 12.5 has Incorrect Access Control. | 4.3 |
2020-01-03 | CVE-2019-19254 | Information Exposure vulnerability in Gitlab GitLab Community Edition (CE) and Enterprise Edition (EE). | 5.3 |
2020-01-03 | CVE-2019-19088 | Path Traversal vulnerability in Gitlab Gitlab Enterprise Edition (EE) 11.3 through 12.4.2 allows Directory Traversal. | 9.8 |
2020-01-03 | CVE-2019-19087 | Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab Gitlab Enterprise Edition (EE) before 12.5.1 has Insecure Permissions (issue 2 of 2). | 4.3 |
2020-01-03 | CVE-2019-19086 | Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab Gitlab Enterprise Edition (EE) before 12.5.1 has Insecure Permissions (issue 1 of 2). | 4.3 |
2019-11-26 | CVE-2019-18456 | Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab An issue was discovered in GitLab Community and Enterprise Edition 8.17 through 12.4 in the Search feature provided by Elasticsearch integration.. | 5.3 |
2019-11-26 | CVE-2019-18455 | Infinite Loop vulnerability in Gitlab An issue was discovered in GitLab Community and Enterprise Edition 11 through 12.4 when building Nested GraphQL queries. | 7.5 |
2019-11-26 | CVE-2019-18454 | Cross-site Scripting vulnerability in Gitlab An issue was discovered in GitLab Community and Enterprise Edition 10.5 through 12.4 in link validation for RDoc wiki pages feature. | 6.1 |
2019-11-26 | CVE-2019-18453 | Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab An issue was discovered in GitLab Community and Enterprise Edition 11.6 through 12.4 in the add comments via email feature. | 4.3 |
2019-11-26 | CVE-2019-18452 | Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.4 when moving an issue to a public project from a private one. | 5.3 |