Vulnerabilities > Gitlab > High

DATE CVE VULNERABILITY TITLE RISK
2020-03-13 CVE-2020-10089 Uncontrolled Recursion vulnerability in Gitlab
GitLab 8.11 through 12.8.1 allows a Denial of Service when using several features to recursively request eachother,
network
low complexity
gitlab CWE-674
7.5
2020-03-13 CVE-2020-10088 Improper Privilege Management vulnerability in Gitlab
GitLab 12.5 through 12.8.1 has Insecure Permissions.
network
low complexity
gitlab CWE-269
8.1
2020-03-13 CVE-2020-10087 Unspecified vulnerability in Gitlab
GitLab before 12.8.2 allows Information Disclosure.
network
low complexity
gitlab
7.5
2020-03-10 CVE-2019-13121 Server-Side Request Forgery (SSRF) vulnerability in Gitlab
An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0.2.
network
low complexity
gitlab CWE-918
7.5
2020-03-10 CVE-2019-13003 Resource Exhaustion vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 12.0.3.
network
low complexity
gitlab CWE-400
7.5
2020-03-10 CVE-2019-12446 Information Exposure Through an Error Message vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 8.3 through 11.11.
network
low complexity
gitlab CWE-209
7.5
2020-03-10 CVE-2019-12441 Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 8.4 through 11.11.
network
low complexity
gitlab CWE-732
7.5
2020-03-10 CVE-2019-12430 Command Injection vulnerability in Gitlab 11.11.0
An issue was discovered in GitLab Community and Enterprise Edition 11.11.
network
low complexity
gitlab CWE-77
8.8
2020-02-17 CVE-2020-8795 Unspecified vulnerability in Gitlab
In GitLab Enterprise Edition (EE) 12.5.0 through 12.7.5, sharing a group with a group could grant project access to unauthorized users.
network
low complexity
gitlab
7.5
2020-02-05 CVE-2020-6833 Unspecified vulnerability in Gitlab
An issue was discovered in GitLab EE 11.3 and later.
network
low complexity
gitlab
7.5