Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gitlab gitlab 15.1.0 vulnerabilities and exploits
(subscribe to this query)
4.8
CVSSv3
CVE-2022-2230
A Stored Cross-Site Scripting vulnerability in the project settings page in GitLab CE/EE affecting all versions from 14.4 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1, allows an malicious user to execute arbitrary JavaScript code in GitLab on a victim's behalf.
Gitlab Gitlab 15.1.0
Gitlab Gitlab
4.3
CVSSv3
CVE-2022-2243
An access control vulnerability in GitLab EE/CE affecting all versions from 14.8 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1, allows authenticated users to enumerate issues in non-linked sentry projects.
Gitlab Gitlab 15.1.0
Gitlab Gitlab
6.1
CVSSv3
CVE-2022-2250
An open redirect vulnerability in GitLab EE/CE affecting all versions from 11.1 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1, allows an malicious user to redirect users to an arbitrary location if they trust the URL.
Gitlab Gitlab 15.1.0
Gitlab Gitlab
8.8
CVSSv3
CVE-2022-2185
A critical issue has been discovered in GitLab affecting all versions starting from 14.0 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 where an authenticated user authorized to import projects could import a maliciously crafted project leading to remote code executio...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
3 Github repositories
4.3
CVSSv3
CVE-2022-2227
Improper access control in the runner jobs API in GitLab CE/EE affecting all versions before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 allows a previous maintainer of a project with a specific runner to access job and project meta data under certain conditions
Gitlab Gitlab 15.1.0
Gitlab Gitlab
6.5
CVSSv3
CVE-2022-2228
Information exposure in GitLab EE affecting all versions from 12.0 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 allows an attacker with the appropriate access tokens to obtain CI variables in a group with using IP-based access restrictions even if the GitLab Runner ...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
4.3
CVSSv3
CVE-2022-2244
An improper authorization vulnerability in GitLab EE/CE affecting all versions from 14.8 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1, allows project memebers with reporter role to manage issues in project's error tracking feature.
Gitlab Gitlab 15.1.0
Gitlab Gitlab
5.3
CVSSv3
CVE-2022-2281
An information disclosure vulnerability in GitLab EE affecting all versions from 12.5 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1, allows disclosure of release titles if group milestones are associated with any project releases.
Gitlab Gitlab 15.1.0
Gitlab Gitlab
5.3
CVSSv3
CVE-2022-1963
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.4 prior to 14.10.5, all versions starting from 15.0 prior to 15.0.4, all versions starting from 15.1 prior to 15.1.1. GitLab reveals if a user has enabled two-factor authentication on their accou...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
7.5
CVSSv3
CVE-2022-2229
An improper authorization issue in GitLab CE/EE affecting all versions from 13.7 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 allows an malicious user to extract the value of an unprotected variable they know the name of in public projects or private projects they...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
TCP
CVE-2024-4577
CVE-2024-2695
CVE-2024-31870
injection
CVE-2024-3813
arbitrary code
CVE-2024-27801
CVE-2024-30120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »