Description
GitLab EE 8.14 through 12.5, 12.4.3, and 12.3.6 has Incorrect Access Control. After a project changed to private, previously forked repositories were still able to get information about the private project through the API.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-8936 | GitLab EE 8.14 through 12.5, 12.4.3, and 12.3.6 has Incorrect Access Control. After a project changed to private, previously forked repositories were still able to get information about the private project through the API. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:16:46.989Z
Reserved: 2019-11-26T00:00:00.000Z
Link: CVE-2019-19312
No data.
Status : Modified
Published: 2020-01-05T22:15:10.707
Modified: 2024-11-21T04:34:33.077
Link: CVE-2019-19312
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD