An issue was discovered in GitLab Community and Enterprise Edition 6.8 through 11.11. Users could bypass the mandatory external authentication provider sign-in restrictions by sending a specially crafted request. It has Improper Authorization.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-03-10T13:08:16
Updated: 2024-08-04T23:17:40.006Z
Reserved: 2019-05-28T00:00:00
Link: CVE-2019-12428
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-03-10T14:15:11.503
Modified: 2024-11-21T04:22:49.367
Link: CVE-2019-12428
Redhat
No data.