Vulnerabilities > Gitlab > Low

DATE CVE VULNERABILITY TITLE RISK
2023-12-15 CVE-2023-3511 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 8.17 before 16.4.4, all versions starting from 16.5 before 16.5.4, all versions starting from 16.6 before 16.6.2.
network
low complexity
gitlab
3.5
2023-12-01 CVE-2023-4658 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 8.13 before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1.
network
high complexity
gitlab
3.1
2023-09-29 CVE-2023-3906 Unspecified vulnerability in Gitlab
An input validation issue in the asset proxy in GitLab EE, affecting all versions from 12.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1, allowed an authenticated attacker to craft image urls which bypass the asset proxy.
network
low complexity
gitlab
3.5
2023-09-01 CVE-2023-3950 Cleartext Storage of Sensitive Information vulnerability in Gitlab
An information disclosure issue in GitLab EE affecting all versions from 16.2 prior to 16.2.5, and 16.3 prior to 16.3.1 allowed other Group Owners to see the Public Key for a Google Cloud Logging audit event streaming destination, if configured.
network
low complexity
gitlab CWE-312
3.8
2023-07-13 CVE-2023-3363 Information Exposure Through Log Files vulnerability in Gitlab
An information disclosure issue in Gitlab CE/EE affecting all versions from 13.6 prior to 15.11.10, all versions from 16.0 prior to 16.0.6, all versions from 16.1 prior to 16.1.1, resulted in the Sidekiq log including webhook tokens when the log format was set to `default`.
local
low complexity
gitlab CWE-532
3.8
2023-07-13 CVE-2023-2620 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.1 prior to 15.11.10, all versions from 16.0 prior to 16.0.6, all versions from 16.1 prior to 16.1.1.
network
low complexity
gitlab
3.8
2023-03-09 CVE-2023-1084 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2.
network
low complexity
gitlab
2.7
2023-03-09 CVE-2023-0483 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 12.1 before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2.
network
low complexity
gitlab
3.8
2023-01-12 CVE-2022-4342 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.1 before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starting from 15.7 before 15.7.2.
network
low complexity
gitlab
3.8
2022-08-05 CVE-2022-2459 Missing Authorization vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1.
network
low complexity
gitlab CWE-862
2.7