An issue was discovered in GitLab Community and Enterprise Edition 8.6 through 12.2.1. Under very specific conditions, commit titles and team member comments could become viewable to users who did not have permission to access these.
References
Link | Resource |
---|---|
https://about.gitlab.com/2019/08/29/security-release-gitlab-12-dot-2-dot-3-released/ | Release Notes Vendor Advisory |
https://gitlab.com/gitlab-org/gitlab-ce/issues/64711 | Broken Link |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-09-16T17:01:20
Updated: 2019-09-16T17:01:20
Reserved: 2019-08-28T00:00:00
Link: CVE-2019-15734
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-09-16T18:15:11.610
Modified: 2019-09-18T12:21:52.840
Link: CVE-2019-15734
JSON object: View
Redhat Information
No data.
CWE