CVE-2019-19312

Published
View on NVD ↗
CVSS v3
5.8
MEDIUM
CVSS v2
5
MEDIUM
Affected
1
PROJECT

Description

GitLab EE 8.14 through 12.5, 12.4.3, and 12.3.6 has Incorrect Access Control. After a project changed to private, previously forked repositories were still able to get information about the private project through the API.

GitLab is the open-source DevSecOps platform that provides a complete software development lifecycle toolchain including source control, CI/CD, security scanning, and project management in a single application.
GitLabGitLab
6.06K