Known vulnerabilities in GitLab Enterprise Edition 11.3.14 - page 12

Version: 11.3.14
Software CPE: cpe:2.3:a:gitlab:gitlab-ee:*:*:*:*:*:*:*:*
Total vulnerabilities: 309
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting GitLab Enterprise Edition version 11.3.14 GitLab Enterprise Edition 11.3.14 is affected by 309 vulnerabilities: 10 high, 161 medium, 138 low Critical High Medium Low

Vulnerabilities (309)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU105742 - Server-Side Request Forgery (SSRF)
CVE-2021-22175
CWE-918 High
No
No
13.6.7, 13.7.7, 13.8.4 14.03.2025 SB2021061129
#VU57053 - Exposure of sensitive information to an unauthorized actor
CVE-2021-39900
CWE-200 Low
No
No
14.1.7, 14.2.5, 14.3.1 05.10.2021 SB2021100403
#VU57052 - Improper Authentication
CVE-2021-39879
CWE-287 Low
No
No
14.1.7, 14.2.5, 14.3.1 05.10.2021 SB2021100403
#VU57051 - Permissions, Privileges, and Access Controls
CVE-2021-39886
CWE-264 Low
No
No
14.1.7 05.10.2021 SB2021100403
#VU57050 - Insufficient Session Expiration
CVE-2021-39899
CWE-613 Low
No
No
14.1.7, 14.2.5, 14.3.1 05.10.2021 SB2021100403
#VU57048 - Security Features
CVE-2021-39881
CWE-254 Low
No
No
14.1.7, 14.2.5, 14.3.1 05.10.2021 SB2021100403
#VU57047 - Insufficient Session Expiration
CVE-2021-39896
CWE-613 Low
No
No
14.1.7, 14.2.5, 14.3.1 05.10.2021 SB2021100403
#VU57046 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2021-39873
CWE-451 Low
No
No
14.1.7, 14.2.5, 14.3.1 05.10.2021 SB2021100403
#VU57045 - Security Features
CVE-2021-39874
CWE-254 Low
No
No
14.1.7, 14.2.5, 14.3.1 05.10.2021 SB2021100403
#VU57043 - Improper Access Control
CVE-2021-39868
CWE-284 Low
No
No
14.1.7, 14.2.5, 14.3.1 05.10.2021 SB2021100403
#VU57024 - Exposure of sensitive information to an unauthorized actor
CVE-2021-39884
CWE-200 Low
No
No
14.1.7, 14.2.5, 14.3.1 04.10.2021 SB2021100403
#VU57021 - Improper input validation
CVE-2021-39893
CWE-20 Medium
No
No
14.1.7, 14.2.5, 14.3.1 04.10.2021 SB2021100403
#VU57020 - Exposure of sensitive information to an unauthorized actor
CVE-2021-39882
CWE-200 Medium
No
No
14.1.7, 14.2.5, 14.3.1 04.10.2021 SB2021100403
#VU57018 - Server-Side Request Forgery (SSRF)
CVE-2021-39894
CWE-918 Medium
No
No
14.1.7, 14.2.5, 14.3.1 04.10.2021 SB2021100403
#VU57016 - Exposure of sensitive information to an unauthorized actor
CVE-2021-39891
CWE-200 Low
No
No
14.1.7, 14.2.5, 14.3.1 04.10.2021 SB2021100403
#VU57014 - Exposure of sensitive information to an unauthorized actor
CVE-2021-39869
CWE-200 Medium
No
No
14.1.7, 14.2.5, 14.3.1 04.10.2021 SB2021100403
#VU56262 - Exposure of sensitive information to an unauthorized actor
CVE-2021-22258
CWE-200 Low
No
No
14.0.9, 14.1.4, 14.2.2 02.09.2021 SB2021090204
#VU54087 - Resource exhaustion
CVE-2021-22217
CWE-400 Medium
No
No
13.10.5, 13.11.5, 13.12.2 14.06.2021 SB2021061405
SB2021060148
#VU54086 - Server-Side Request Forgery (SSRF)
CVE-2021-22214
CWE-918 High
Public exploit available
No
13.10.5, 13.11.5, 13.12.2 14.06.2021 SB2021061405
SB2021060148
#VU54021 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-22213
CWE-79 Low
No
No
13.10.5, 13.11.5, 13.12.2 10.06.2021 SB2021061405
SB2021060148


Showing elements 221 - 240 out of 309