Vulnerabilities > Gitlab > High

DATE CVE VULNERABILITY TITLE RISK
2020-03-10 CVE-2019-12446 Information Exposure Through an Error Message vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 8.3 through 11.11.
network
low complexity
gitlab CWE-209
7.5
2020-03-10 CVE-2019-12441 Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 8.4 through 11.11.
network
low complexity
gitlab CWE-732
7.5
2020-03-10 CVE-2019-12430 Command Injection vulnerability in Gitlab 11.11.0
An issue was discovered in GitLab Community and Enterprise Edition 11.11.
network
low complexity
gitlab CWE-77
8.8
2020-02-17 CVE-2020-8795 Unspecified vulnerability in Gitlab
In GitLab Enterprise Edition (EE) 12.5.0 through 12.7.5, sharing a group with a group could grant project access to unauthorized users.
network
low complexity
gitlab
7.5
2020-02-05 CVE-2020-6833 Unspecified vulnerability in Gitlab
An issue was discovered in GitLab EE 11.3 and later.
network
low complexity
gitlab
7.5
2020-02-05 CVE-2020-7978 Unspecified vulnerability in Gitlab
GitLab EE 12.6 and later through 12.7.2 allows Denial of Service.
network
low complexity
gitlab
7.5
2020-02-05 CVE-2020-7972 Incorrect Default Permissions vulnerability in Gitlab
GitLab EE 12.2 has Insecure Permissions (issue 2 of 2).
network
low complexity
gitlab CWE-276
7.5
2020-02-05 CVE-2020-7969 Unspecified vulnerability in Gitlab
GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure.
network
low complexity
gitlab
7.5
2020-02-05 CVE-2020-7968 Missing Authorization vulnerability in Gitlab
GitLab EE 8.0 through 12.7.2 has Incorrect Access Control.
network
low complexity
gitlab CWE-862
7.5
2020-02-05 CVE-2020-7966 Path Traversal vulnerability in Gitlab
GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal.
network
low complexity
gitlab CWE-22
7.5