Vulnerabilities
Vulnerable Software
Gitlab:  >> Gitlab  >> 11.11.1  Security Vulnerabilities
An issue was discovered in GitLab Enterprise Edition 11.x and 12.x before 12.0.9, 12.1.x before 12.1.9, and 12.2.x before 12.2.5. It has Incorrect Access Control.
CVSS Score
7.1
EPSS Score
0.001
Published
2019-09-16
An authorization issue was discovered in the GitLab CE/EE CI badge images endpoint which could result in disclosure of the build status. This vulnerability was addressed in 12.1.2, 12.0.4, and 11.11.6.
CVSS Score
5.3
EPSS Score
0.002
Published
2019-09-09
An input validation and output encoding issue was discovered in the GitLab email notification feature which could result in a persistent XSS. This was addressed in GitLab 12.1.2, 12.0.4, and 11.11.6.
CVSS Score
5.4
EPSS Score
0.001
Published
2019-09-09
An input validation problem was discovered in the GitHub service integration which could result in an attacker being able to make arbitrary POST requests in a GitLab instance's internal network. This vulnerability was addressed in 12.1.2, 12.0.4, and 11.11.6.
CVSS Score
3.5
EPSS Score
0.001
Published
2019-09-09


Contact Us

Shodan ® - All rights reserved