vulnerability

FreeBSD: VID-1020d401-6d2d-11eb-ab0b-001b217b3468: Gitlab -- Multiple Vulnerabilities

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:C/I:N/A:N)
Published
Feb 12, 2021
Added
Feb 13, 2021
Modified
Dec 10, 2025

Description

Gitlab reports: Improper Certificate Validation for Fortinet OTP Denial of Service Attack on gitlab-shell Resource exhaustion due to pending jobs Confidential issue titles were exposed Improper access control allowed demoted project members to access authored merge requests Improper access control allowed unauthorized users to access analytic pages Unauthenticated CI lint API may lead to information disclosure and SSRF Prometheus integration in Gitlab may lead to SSRF

Solution

freebsd-upgrade-package-gitlab-ce

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.