An issue was discovered in GitLab Enterprise Edition and Community Edition 1.10 through 12.0.2. The GitLab graphql service was vulnerable to multiple authorization issues that disclosed restricted user, group, and repository metadata to unauthorized users. It has Incorrect Access Control.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-10T14:57:24

Updated: 2020-03-10T14:57:24

Reserved: 2019-06-28T00:00:00


Link: CVE-2019-13005

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-03-10T15:15:15.917

Modified: 2020-08-24T17:37:01.140


Link: CVE-2019-13005

JSON object: View

cve-icon Redhat Information

No data.