Gitlab
1,451 known vulnerabilities
Top Products
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.11 prior to 16.11.2. A problem with
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.9 prior to 16.9.7, starting from 16
An issue has been discovered in GitLab CE/EE affecting all versions starting from 7.8 before 16.9.6, all versions starti
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.7 before 16.9.6, all versions start
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.5 before 16.9.6, all versions start
An issue has been discovered in GitLab affecting all versions of GitLab CE/EE 16.9 prior to 16.9.6, 16.10 prior to 16.1
An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.6, all versions starting from 16.10 befo
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.9 before 16.9.4, all versions start
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.7 to 16.8.6 all versions starting f
An issue has been discovered in GitLab EE affecting all versions before 16.8.6, all versions starting from 16.9 before 1
A denial of service vulnerability was identified in GitLab CE/EE, versions 16.7.7 prior to 16.8.6, 16.9 prior to 16.9.4
An issue has been discovered in GitLab CE/EE affecting all versions before 16.8.5, all versions starting from 16.9 befor
An issue has been discovered in GitLab CE/EE affecting all versions before 16.8.5, all versions starting from 16.9 befor
A privilege escalation vulnerability was discovered in GitLab affecting versions 16.8 prior to 16.8.4 and 16.9 prior to
An authorization bypass vulnerability was discovered in GitLab affecting versions 11.3 prior to 16.7.7, 16.7.6 prior to
An issue has been discovered in GitLab EE affecting all versions starting from 12.0 to 16.7.6, all versions starting fro
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.1 before 16.7.6, all versions start
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.9 before 16.9.1. A crafted payload
An issue has been discovered in GitLab EE affecting all versions starting from 16.4 before 16.7.6, all versions starting
An authorization bypass vulnerability was discovered in GitLab affecting versions 15.1 prior to 16.7.6, 16.8 prior to 16
An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting
An issue has been discovered in GitLab affecting all versions before 16.7.6, all versions starting from 16.8 before 16.8
An issue has been discovered in GitLab EE affecting all versions starting from 16.8 before 16.8.2. When a user is assign
An issue has been discovered in GitLab EE Premium and Ultimate affecting versions 16.4.3, 16.5.3, and 16.6.1. In project
An issue has been discovered in GitLab EE affecting all versions from 13.3.0 prior to 16.6.7, 16.7 prior to 16.7.5, and
An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16
An issue has been discovered in GitLab EE affecting all versions starting from 11.3 before 16.7.6, all versions starting
An issue has been discovered in GitLab CE/EE affecting all versions from 12.7 prior to 16.6.6, 16.7 prior to 16.7.4, and
An issue has been discovered in GitLab affecting all versions before 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.
An authorization vulnerability exists in GitLab versions 14.0 prior to 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 1
An issue has been discovered in GitLab CE/EE affecting all versions from 16.0 prior to 16.6.6, 16.7 prior to 16.7.4, and
An issue has been discovered in GitLab CE/EE affecting all versions after 13.7 before 16.6.6, 16.7 prior to 16.7.4, and
An issue has been discovered in GitLab CE/EE affecting all versions from 16.1 prior to 16.1.6, 16.2 prior to 16.2.9, 16.
A missing authorization check vulnerability exists in GitLab Remote Development affecting all versions prior to 16.5.6,
Incorrect authorization checks in GitLab CE/EE from all versions starting from 8.13 before 16.5.6, all versions starting
An issue has been discovered in GitLab EE affecting all versions starting from 15.3 before 16.5.6, all versions starting
An issue has been discovered in GitLab CE/EE affecting all versions from 12.2 prior to 16.5.6, 16.6 prior to 16.6.4, and
A privilege escalation vulnerability in GitLab EE affecting all versions from 16.0 prior to 16.4.4, 16.5 prior to 16.5.4
An improper certificate validation issue in Smartcard authentication in GitLab EE affecting all versions from 11.6 prior
An issue has been discovered in GitLab CE/EE affecting all versions before 16.4.4, all versions starting from 16.5 befor
An issue has been discovered in GitLab CE/EE affecting all versions from 16.3 before 16.4.4, all versions starting from
An issue has been discovered in GitLab affecting all versions starting from 9.3 before 16.4.4, all versions starting fro
An issue has been discovered in GitLab EE affecting all versions starting before 16.4.4, all versions starting from 16.5
An issue has been discovered in GitLab EE affecting all versions starting from 8.17 before 16.4.4, all versions starting
Patch in third party library Consul requires 'enable-script-checks' to be set to False. This was required to enable a pa
Improper neutralization of input in Jira integration configuration in GitLab CE/EE, affecting all versions from 15.10 pr
An issue has been discovered in GitLab EE affecting all versions starting from 16.2 before 16.4.3, all versions starting
An issue has been discovered in GitLab affecting all versions before 16.4.3, all versions starting from 16.5 before 16.5
An issue has been discovered in GitLab EE affecting all versions starting from 10.5 before 16.4.3, all versions starting
An issue has been discovered in GitLab EE affecting all versions starting from 8.13 before 16.4.3, all versions starting
Frequently Asked Questions
How many CVEs affect Gitlab?
Gitlab has 1,451 CVE records in our database, including 57 critical and 304 high severity vulnerabilities. 4 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Gitlab vulnerabilities?
Gitlab has 57 critical severity (CVSS 9.0+) and 304 high severity (CVSS 7.0-8.9) vulnerabilities. 4 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Gitlab vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Gitlab products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Gitlab Vulnerabilities
CyberStrike scans your infrastructure for Gitlab vulnerabilities and provides real-time remediation guidance.
Get Started