Skip to content
Commits on Source (2)
......@@ -4074,8 +4074,9 @@ CVE-2018-16159 (The Gift Vouchers plugin through 2.0.1 for WordPress allows SQL
CVE-2018-XXXX [gitlab: Missing Authorization Control API Repository Storage]
- gitlab <not-affected> (Only affects Enterprise edition)
NOTE: https://about.gitlab.com/2018/08/28/security-release-gitlab-11-dot-2-dot-2-released/
CVE-2018-XXXX [gitlab: Orphaned Upload Files Exposure]
CVE-2018-16051 [gitlab: Orphaned Upload Files Exposure]
- gitlab <unfixed>
NOTE: https://gitlab.com/gitlab-org/gitlab-ee/issues/6012
NOTE: https://about.gitlab.com/2018/08/28/security-release-gitlab-11-dot-2-dot-2-released/
CVE-2018-XXXX [gitlab: Missing CSRF in System Hooks]
- gitlab <unfixed>
......@@ -4083,9 +4084,10 @@ CVE-2018-XXXX [gitlab: Missing CSRF in System Hooks]
CVE-2018-XXXX [gitlab: Sensitive Data Disclosure in Sidekiq Logs]
- gitlab <unfixed>
NOTE: https://about.gitlab.com/2018/08/28/security-release-gitlab-11-dot-2-dot-2-released/
CVE-2018-XXXX [gitlab: Persistent XSS in Merge Request Changes View]
CVE-2018-16050 [gitlab: Persistent XSS in Merge Request Changes View]
- gitlab <unfixed>
[stretch] - gitlab <not-affected> (Only affects 11.1 and 11.2)
NOTE: https://gitlab.com/gitlab-org/gitlab-ce/issues/49085
NOTE: https://about.gitlab.com/2018/08/28/security-release-gitlab-11-dot-2-dot-2-released/
CVE-2018-XXXX [gitlab: Persistent XSS in Pipeline Tooltip]
- gitlab <unfixed>
......@@ -4404,10 +4406,6 @@ CVE-2018-16053
RESERVED
CVE-2018-16052
RESERVED
CVE-2018-16051
RESERVED
CVE-2018-16050
RESERVED
CVE-2018-16049
RESERVED
CVE-2018-16048