Vulnerabilities > Gitlab > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-09-14 CVE-2020-13300 Incorrect Authorization vulnerability in Gitlab 13.3.0/13.3.1/13.3.2
GitLab CE/EE version 13.3 prior to 13.3.4 was vulnerable to an OAuth authorization scope change without user consent in the middle of the authorization flow.
network
low complexity
gitlab CWE-863
critical
10.0
2019-09-16 CVE-2019-15741 Unspecified vulnerability in Gitlab Omnibus
An issue was discovered in GitLab Omnibus 7.4 through 12.2.1.
network
low complexity
gitlab
critical
9.8