Vulnerabilities
Vulnerable Software
Gitlab:  >> Gitlab  >> 14.1.7  Security Vulnerabilities
In all versions of GitLab CE/EE since version 13.0, a privileged user, through an API call, can change the visibility level of a group or a project to a restricted option even after the instance administrator sets that visibility option as restricted in settings.
CVSS Score
6.5
EPSS Score
0.003
Published
2021-11-04
A regular expression denial of service issue in GitLab versions 8.13 to 14.2.5, 14.3.0 to 14.3.3 and 14.4.0 could cause excessive usage of resources when a specially crafted username was used when provisioning a new user
CVSS Score
3.1
EPSS Score
0.002
Published
2021-11-04
Incorrect Authorization in GitLab CE/EE 13.4 or above allows a user with guest membership in a project to modify the severity of an incident.
CVSS Score
4.3
EPSS Score
0.002
Published
2021-11-04


Contact Us

Shodan ® - All rights reserved