An issue was discovered in GitLab Community and Enterprise Edition 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x before 11.5.1. There is an incorrect access vulnerability that allows an unauthorized user to view private group names.
References
Link | Resource |
---|---|
https://about.gitlab.com/2018/11/28/security-release-gitlab-11-dot-5-dot-1-released/ | Release Notes Vendor Advisory |
https://gitlab.com/gitlab-org/gitlab-ce/issues/51262 | Issue Tracking Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2019-07-10 08:15
Updated : 2019-07-11 09:40
NVD link : CVE-2018-19494
Mitre link : CVE-2018-19494
JSON object : View
CWE
CWE-284
Improper Access Control
Products Affected
gitlab
- gitlab