Vulnerabilities > Gitlab > Gitlab > 13.0.0

DATE CVE VULNERABILITY TITLE RISK
2020-10-07 CVE-2020-13334 Incorrect Authorization vulnerability in Gitlab
In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper authorization checks allow a non-member of a project/group to change the confidentiality attribute of issue via mutation GraphQL query
network
low complexity
gitlab CWE-863
5.0
2020-10-06 CVE-2020-13343 Exposure of Resource to Wrong Sphere vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 11.2.
network
low complexity
gitlab CWE-668
4.0
2020-10-06 CVE-2020-13345 Cross-site Scripting vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 10.8.
network
gitlab CWE-79
3.5
2020-10-02 CVE-2020-13338 Cross-site Scripting vulnerability in Gitlab
An issue has been discovered in GitLab affecting versions prior to 12.10.13, 13.0.8, 13.1.2.
network
gitlab CWE-79
3.5
2020-09-30 CVE-2020-13328 Cross-site Scripting vulnerability in Gitlab
An issue has been discovered in GitLab affecting versions prior to 13.1.2, 13.0.8 and 12.10.13.
network
gitlab CWE-79
3.5
2020-09-30 CVE-2020-13326 Unspecified vulnerability in Gitlab
A vulnerability was discovered in GitLab versions prior to 13.1.
network
gitlab
3.5
2020-09-30 CVE-2020-13325 Unspecified vulnerability in Gitlab
A vulnerability was discovered in GitLab versions prior 13.1.
network
low complexity
gitlab
5.5
2020-09-30 CVE-2020-13324 Unspecified vulnerability in Gitlab
A vulnerability was discovered in GitLab versions prior to 13.1.
network
gitlab
3.5
2020-09-30 CVE-2020-13323 Incorrect Authorization vulnerability in Gitlab
A vulnerability was discovered in GitLab versions prior 13.1.
network
gitlab CWE-863
4.3
2020-09-30 CVE-2020-13322 Incorrect Authorization vulnerability in Gitlab
A vulnerability was discovered in GitLab versions after 12.9.
network
low complexity
gitlab CWE-863
6.5