ZeroHour

CVE-2019-12431

CVSS 3.1
4.3 medium
EPSS
<1%p53
Published
()
Modified
Description

An issue was discovered in GitLab Community and Enterprise Edition 8.13 through 11.11. Restricted users could access the metadata of private milestones through the Search API. It has Improper Access Control.

Vendors
gitlab
Products
gitlab
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.