Vulnerabilities > Gitlab > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-06-07 CVE-2023-2442 Cross-site Scripting vulnerability in Gitlab 15.11.0/15.11.2/16.0.0
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.11 before 15.11.7, all versions starting from 16.0 before 16.0.2.
network
low complexity
gitlab CWE-79
5.4
2023-06-06 CVE-2023-1621 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions starting from 15.11 before 15.11.1.
network
low complexity
gitlab
6.5
2023-06-06 CVE-2023-0921 Allocation of Resources Without Limits or Throttling vulnerability in Gitlab
A lack of length validation in GitLab CE/EE affecting all versions from 8.3 before 15.10.8, 15.11 before 15.11.7, and 16.0 before 16.0.2 allows an authenticated attacker to create a large Issue description via GraphQL which, when repeatedly requested, saturates CPU usage.
network
low complexity
gitlab CWE-770
4.3
2023-05-12 CVE-2023-2181 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions before 15.9.8, 15.10.0 before 15.10.7, and 15.11.0 before 15.11.3.
network
low complexity
gitlab
6.5
2023-05-08 CVE-2023-2478 Incorrect Permission Assignment for Critical Resource vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 before 15.9.7, all versions starting from 15.10 before 15.10.6, all versions starting from 15.11 before 15.11.2.
network
low complexity
gitlab CWE-732
6.5
2023-05-03 CVE-2022-4376 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1.
network
low complexity
gitlab
4.3
2023-05-03 CVE-2023-1178 Code Injection vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions from 8.6 before 15.9.6, all versions starting from 15.10 before 15.10.5, all versions starting from 15.11 before 15.11.1.
network
low complexity
gitlab CWE-94
5.7
2023-05-03 CVE-2023-0155 Open Redirect vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions before 15.8.5, 15.9.4, 15.10.1.
network
low complexity
gitlab CWE-601
5.4
2023-05-03 CVE-2023-0485 Exposure of Resource to Wrong Sphere vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 13.11 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1.
network
low complexity
gitlab CWE-668
6.5
2023-05-03 CVE-2023-1204 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.1 before 15.10.8, all versions starting from 15.11 before 15.11.7, all versions starting from 16.0 before 16.0.2.
network
low complexity
gitlab
4.3