Vulnerabilities > Gitlab > High

DATE CVE VULNERABILITY TITLE RISK
2023-09-30 CVE-2023-5207 Unspecified vulnerability in Gitlab
A vulnerability was discovered in GitLab CE and EE affecting all versions starting 16.0 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1.
network
low complexity
gitlab
8.8
2023-09-29 CVE-2023-3413 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 16.2 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1.
network
low complexity
gitlab
7.5
2023-09-29 CVE-2023-3922 Open Redirect vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 8.15 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1.
network
low complexity
gitlab CWE-601
7.1
2023-09-29 CVE-2023-3917 Unspecified vulnerability in Gitlab
Denial of Service in pipelines affecting all versions of Gitlab EE and CE prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1 allows attacker to cause pipelines to fail.
network
low complexity
gitlab
7.5
2023-09-01 CVE-2023-3915 Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 16.1 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1.
network
low complexity
gitlab CWE-732
7.2
2023-09-01 CVE-2023-4647 Allocation of Resources Without Limits or Throttling vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 15.2 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1 in which the projects API pagination can be skipped, potentially leading to DoS on certain instances.
network
low complexity
gitlab CWE-770
7.5
2023-08-02 CVE-2023-4011 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions from 15.11 prior to 16.2.2 which allows an attacker to spike the resource consumption resulting in DoS.
network
low complexity
gitlab
7.5
2023-08-02 CVE-2023-3900 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2.
network
low complexity
gitlab
7.5
2023-08-02 CVE-2023-3993 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 14.3 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2.
network
low complexity
gitlab
7.5
2023-08-02 CVE-2023-3994 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 9.3 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2.
network
low complexity
gitlab
7.5