Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gitlab gitlab 15.1.0 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2022-2185
A critical issue has been discovered in GitLab affecting all versions starting from 14.0 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 where an authenticated user authorized to import projects could import a maliciously crafted project leading to remote code executio...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
3 Github repositories
5
CVSSv2
CVE-2022-1954
A Regular Expression Denial of Service vulnerability in GitLab CE/EE affecting all versions from 1.0.2 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 allows an malicious user to make a GitLab instance inaccessible via specially crafted web server response headers
Gitlab Gitlab 15.1.0
Gitlab Gitlab
5
CVSSv2
CVE-2022-1963
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.4 prior to 14.10.5, all versions starting from 15.0 prior to 15.0.4, all versions starting from 15.1 prior to 15.1.1. GitLab reveals if a user has enabled two-factor authentication on their accou...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
3.5
CVSSv2
CVE-2022-1981
An issue has been discovered in GitLab EE affecting all versions starting from 12.2 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1. In GitLab, if a group enables the setting to restrict access to users belonging to specific domains, that allow-list may be bypassed if ...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
4
CVSSv2
CVE-2022-1983
Incorrect authorization in GitLab EE affecting all versions from 10.7 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1, allowed an attacker already in possession of a valid Deploy Key or a Deploy Token to misuse it from any location to access Container Registries even w...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
4.3
CVSSv2
CVE-2022-1999
An issue has been discovered in GitLab CE/EE affecting all versions from 8.13 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1. Under certain conditions, using the REST API an unprivileged user was able to change labels description.
Gitlab Gitlab 15.1.0
Gitlab Gitlab
5
CVSSv2
CVE-2022-2229
An improper authorization issue in GitLab CE/EE affecting all versions from 13.7 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 allows an malicious user to extract the value of an unprotected variable they know the name of in public projects or private projects they...
Gitlab Gitlab 15.1.0
Gitlab Gitlab
3.5
CVSSv2
CVE-2022-2235
Insufficient sanitization in GitLab EE's external issue tracker affecting all versions from 14.5 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 allows an malicious user to perform cross-site scripting when a victim clicks on a maliciously crafted ZenTao link
Gitlab Gitlab 15.1.0
Gitlab Gitlab
4
CVSSv2
CVE-2022-2244
An improper authorization vulnerability in GitLab EE/CE affecting all versions from 14.8 before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1, allows project memebers with reporter role to manage issues in project's error tracking feature.
Gitlab Gitlab 15.1.0
Gitlab Gitlab
3.5
CVSSv2
CVE-2022-2227
Improper access control in the runner jobs API in GitLab CE/EE affecting all versions before 14.10.5, 15.0 before 15.0.4, and 15.1 before 15.1.1 allows a previous maintainer of a project with a specific runner to access job and project meta data under certain conditions
Gitlab Gitlab 15.1.0
Gitlab Gitlab
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30051
remote
CVE-2024-27954
CVE-2023-51483
CVE-2023-47782
SSRF
CVE-2024-24715
CVE-2023-52424
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »