CVE-2019-18456

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/11/2019
Last modified:
24/08/2020

Description

An issue was discovered in GitLab Community and Enterprise Edition 8.17 through 12.4 in the Search feature provided by Elasticsearch integration.. It has Insecure Permissions (issue 1 of 4).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:* 8.17.0 (including) 12.4.0 (including)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:* 8.17.0 (including) 12.4.0 (including)