Known vulnerabilities in GitLab
Vendor:
Jenkins
Software:
GitLab
Software CPE:
cpe:2.3:a:jenkins:gitlab:*:*:*:*:*:*:*:*
Website:
https://jenkins.io/
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
6.3
Breakdown by Severity Chart
1.2152.veec0897048b_0
1.2149.vcfc32c82b_f7f
1.2148
1.9.182144.vc1c369226a_52
1.9.182144
1.9.17
1.9.16
1.9.15
1.9.14
1.9.13
1.9.12
1.9.11
1.9.10
1.9.9
1.9.8
1.9.7
1.9.6
1.9.5
1.9.4
1.8.2
1.9.3
1.9.2
1.9.1
1.9.0
1.8.1
1.8.0
1.7.18
1.7.17
1.7
1.7.16
1.7.15
1.7.14
1.7.13
1.7.12
1.7.11
1.7.10
1.7.9
1.7.8
1.7.7
1.7.6
1.7.5
1.7.4
1.7.3
1.7.2
1.6
1.6.0
1.5.36
1.5.35
1.5.34
1.5.33
1.5.32
1.5.31
1.5.30
1.5.29
1.5.28
1.5.27
1.5.26
1.5.25
1.5.24
1.5.23
1.5.22
1.5.21
1.5.20
1.5.19
1.5.18
1.5.17
1.5.16
1.5.15
1.5.14
1.5.13
1.5.12
1.5.11
1.5.10
1.5.9
1.5.8
1.5.7
1.5.6
1.5.5
1.5.4
1.5.3
1.5.2
1.5.1
1.5.0
1.5
1.4.8
1.4.7
1.4.6
1.4.5
1.4.4
1.4.3
1.4.2
1.4.1
1.4.0
1.3.2
1.3.1
1.3.0
1.2.5
1.2.4
1.2.3
1.2.2
1.2.1
1.2.0
1.1.32
1.1.31
1.1.30
1.1.29
1.1.28
1.1.26
1.1.25
1.1.24
1.1.23
1.1.22
1.1.21
1.1.20
1.1.19
1.1.18
1.1.17
1.1.16
1.1.15
1.1.14
1.1.13
1.1.12
1.1.11
1.1.10
1.1.9
1.1.8
1.1.7
1.1.6
1.1.5
1.1.4
1.1.3
1.1.2
1.1.1
1.1.0
1.0.11
1.0.10
1.0.9
1.0.8
1.0.7
1.0.6
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU150968 - Insufficiently Protected Credentials CVE-2026-92133 |
CWE-522 | Medium | 1.2152.veec0897048b_0 | 18.09.2026 |
SB20260918169 |
||
| #VU147206 - Server-Side Request Forgery (SSRF) CVE-2026-84664 |
CWE-918 | Medium | 1.9.182144.vc1c369226a_52 | 07.09.2026 |
SB2026090704 |
||
| #VU103256 - Exposure of sensitive information to an unauthorized actor CVE-2025-24397 |
CWE-200 | Low | 1.9.7 | 23.01.2025 |
SB2025012328 |
||
| #VU68545 - Information Exposure Through Timing Discrepancy CVE-2022-43411 |
CWE-208 | Low | 1.5.36 | 20.10.2022 |
SB2022102062 |
||
| #VU64877 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2022-34777 |
CWE-79 | Low | 1.5.35 | 04.07.2022 |
SB2022070407 |
||
| #VU63380 - Permissions, Privileges, and Access Controls CVE-2022-30955 |
CWE-264 | Low | 1.5.32 | 18.05.2022 |
SB2022051815 |