Search CVE reports


Toggle filters

1281 – 1290 of 1538 results


CVE-2019-18458

Medium priority
Not affected

An issue was discovered in GitLab Community and Enterprise Edition through 12.4. It has Insecure Permissions (issue 2 of 4).

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab Not in release
Show less packages

CVE-2019-18457

Medium priority
Not affected

An issue was discovered in GitLab Community and Enterprise Edition 11.8 through 12.4 when handling Security tokens.. It has Insecure Permissions.

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab Not in release
Show less packages

CVE-2019-18463

Medium priority
Not affected

An issue was discovered in GitLab Community and Enterprise Edition through 12.4. It has Insecure Permissions (issue 4 of 4).

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab Not in release
Show less packages

CVE-2019-18462

Medium priority
Not affected

An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.4. It has Insecure Permissions.

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab Not in release
Show less packages

CVE-2019-18461

Medium priority
Not affected

An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.3 when a sub group epic is added to a public group. It has Incorrect Access Control.

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab Not in release
Show less packages

CVE-2019-18460

Medium priority
Not affected

An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.4 in the Comments Search feature provided by the Elasticsearch integration. It has Incorrect Access Control.

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab Not in release
Show less packages

CVE-2019-10214

Medium priority
Needs evaluation

The containers/image library used by the container tools Podman, Buildah, and Skopeo in Red Hat Enterprise Linux version 8 and CRI-O in OpenShift Container Platform, does not enforce TLS connections to the container registry...

2 affected packages

golang-github-containers-image, singularity-container

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
golang-github-containers-image Needs evaluation Needs evaluation Needs evaluation Not in release
singularity-container Needs evaluation Not in release Not in release Needs evaluation
Show less packages

CVE-2019-15593

Medium priority
Not affected

GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab Not in release
Show less packages

CVE-2013-1425

Medium priority
Not affected

ldap-git-backup before 1.0.4 exposes password hashes due to incorrect directory permissions.

1 affected package

ldap-git-backup

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ldap-git-backup
Show less packages

CVE-2010-2447

Low priority
Not affected

gitolite before 1.4.1 does not filter src/ or hooks/ from path names.

1 affected package

gitolite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitolite
Show less packages