Known vulnerabilities in GitLab Enterprise Edition - page 34

Software CPE: cpe:2.3:a:gitlab:gitlab-ee:*:*:*:*:*:*:*:*
Total vulnerabilities: 1052
Public exploits: 16
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting GitLab Enterprise Edition GitLab Enterprise Edition is affected by 1052 known vulnerabilities: 1 critical, 31 high, 481 medium, 539 low Critical High Medium Low

Vulnerabilities (1052)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67801 - Improper input validation
CVE-2022-3288
CWE-20 Low
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67800 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3351
CWE-200 Low
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67799 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3330
CWE-200 Low
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67798 - Security Features
CVE-2022-3285
CWE-254 Medium
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67796 - Improper input validation
CVE-2022-3066
CWE-20 Medium
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67795 - Improper Access Control
CVE-2022-2882
CWE-284 Low
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67794 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3067
CWE-200 Low
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67793 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3291
CWE-200 Medium
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67792 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3018
CWE-200 Low
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67791 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-2904
CWE-79 Low
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67790 - Improper Control of Resource Identifiers ('Resource Injection')
CVE-2022-3060
CWE-99 Medium
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU67789 - Improper input validation
CVE-2022-3283
CWE-20 Medium
No
No
15.2.5, 15.3.4, 15.4.1 03.10.2022 SB2022100325
#VU66886 - Weak Password Requirements
CVE-2022-3031
CWE-521 Low
No
No
15.1.6, 15.2.4, 15.3.2 31.08.2022 SB2022083113
#VU66885 - Exposure of sensitive information to an unauthorized actor
CVE-2022-2907
CWE-200 Low
No
No
15.1.6, 15.2.4, 15.3.2 31.08.2022 SB2022083113
#VU66884 - Improper input validation
CVE-2022-2931
CWE-20 Low
No
No
15.1.6, 15.2.4, 15.3.2 31.08.2022 SB2022083113
#VU66883 - Improper Access Control
CVE-2022-2630
CWE-284 Low
No
No
15.1.6, 15.2.4, 15.3.2 31.08.2022 SB2022083113
#VU66882 - Improper input validation
CVE-2022-2908
CWE-20 Low
No
No
15.1.6, 15.2.4, 15.3.2 31.08.2022 SB2022083113
#VU66880 - Improper input validation
CVE-2022-2428
CWE-20 Medium
No
No
15.1.6, 15.2.4, 15.3.2 31.08.2022 SB2022083113
#VU66875 - Business Logic Errors (3.0)
CVE-2022-2455
CWE-840 Medium
No
No
15.1.6, 15.2.4, 15.3.2 31.08.2022 SB2022083113
#VU66874 - Improper Authentication
CVE-2022-2533
CWE-287 Low
No
No
15.1.6, 15.2.4, 15.3.2 31.08.2022 SB2022083113


Showing elements 661 - 680 out of 1052