CVE-2019-12429

An issue was discovered in GitLab Community and Enterprise Edition 11.9 through 11.11. Unprivileged users were able to access labels, status and merge request counts of confidential issues via the milestone details page. It has Improper Access Control.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*

History

21 Nov 2024, 04:22

Type Values Removed Values Added
References () https://about.gitlab.com/blog/categories/releases/ - Release Notes, Vendor Advisory () https://about.gitlab.com/blog/categories/releases/ - Release Notes, Vendor Advisory
References () https://about.gitlab.com/releases/2019/06/03/security-release-gitlab-11-dot-11-dot-1-released/ - Release Notes, Vendor Advisory () https://about.gitlab.com/releases/2019/06/03/security-release-gitlab-11-dot-11-dot-1-released/ - Release Notes, Vendor Advisory

Information

Published : 2020-03-10 14:15

Updated : 2024-11-21 04:22


NVD link : CVE-2019-12429

Mitre link : CVE-2019-12429

CVE.ORG link : CVE-2019-12429


JSON object : View

Products Affected

gitlab

  • gitlab