Vulnerabilities > Gitlab > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-04-25 CVE-2024-1347 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.6, all versions starting from 16.10 before 16.10.4, all versions starting from 16.11 before 16.11.1.
network
low complexity
gitlab
5.3
2024-04-12 CVE-2023-6489 Unspecified vulnerability in Gitlab
A denial of service vulnerability was identified in GitLab CE/EE, versions 16.7.7 prior to 16.8.6, 16.9 prior to 16.9.4 and 16.10 prior to 16.10.2 which allows an attacker to spike the GitLab instance resources usage resulting in service degradation via chat integration feature.
network
low complexity
gitlab
6.5
2024-04-12 CVE-2023-6678 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions before 16.8.6, all versions starting from 16.9 before 16.9.4, all versions starting from 16.10 before 16.10.2.
network
low complexity
gitlab
6.5
2024-04-12 CVE-2024-2279 Cross-site Scripting vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.7 to 16.8.6 all versions starting from 16.9 before 16.9.4, all versions starting from 16.10 before 16.10.2.
network
low complexity
gitlab CWE-79
5.4
2024-04-12 CVE-2024-3092 Cross-site Scripting vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.9 before 16.9.4, all versions starting from 16.10 before 16.10.2.
network
low complexity
gitlab CWE-79
5.4
2024-03-28 CVE-2023-6371 Cross-site Scripting vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions before 16.8.5, all versions starting from 16.9 before 16.9.3, all versions starting from 16.10 before 16.10.1.
network
low complexity
gitlab CWE-79
5.4
2024-03-28 CVE-2024-2818 Allocation of Resources Without Limits or Throttling vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions before 16.8.5, all versions starting from 16.9 before 16.9.3, all versions starting from 16.10 before 16.10.1.
network
low complexity
gitlab CWE-770
6.5
2024-02-22 CVE-2023-4895 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 12.0 to 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1.
network
low complexity
gitlab
4.3
2024-02-22 CVE-2023-6477 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1.
network
low complexity
gitlab
6.7
2024-02-22 CVE-2024-0861 Unspecified vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 16.4 before 16.7.6, all versions starting from 16.8 before 16.8.3, all versions starting from 16.9 before 16.9.1.
network
low complexity
gitlab
4.3