Vulnerabilities > Gitlab > Gitlab > 14.6.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-01-18 | CVE-2022-0093 | Unspecified vulnerability in Gitlab An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. | 4.3 |
2022-01-18 | CVE-2022-0124 | Improper Encoding or Escaping of Output vulnerability in Gitlab An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. | 4.3 |
2022-01-18 | CVE-2022-0125 | Missing Authorization vulnerability in Gitlab An issue has been discovered in GitLab affecting all versions starting from 12.0 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. | 4.3 |
2022-01-18 | CVE-2022-0151 | Unspecified vulnerability in Gitlab An issue has been discovered in GitLab affecting all versions starting from 12.10 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. | 5.0 |
2022-01-18 | CVE-2022-0152 | Missing Authorization vulnerability in Gitlab An issue has been discovered in GitLab affecting all versions starting from 13.10 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. | 4.0 |
2022-01-18 | CVE-2022-0154 | Cross-Site Request Forgery (CSRF) vulnerability in Gitlab An issue has been discovered in GitLab affecting all versions starting from 7.7 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. | 6.0 |
2022-01-18 | CVE-2022-0172 | Unspecified vulnerability in Gitlab An issue has been discovered in GitLab CE/EE affecting all versions starting with 12.3. | 6.5 |
2022-01-18 | CVE-2022-0244 | Files or Directories Accessible to External Parties vulnerability in Gitlab An issue has been discovered in GitLab CE/EE affecting all versions starting with 14.5. | 5.0 |
2021-06-24 | CVE-2021-32823 | In the bindata RubyGem before version 2.4.10 there is a potential denial-of-service vulnerability. | 3.7 |