HIGH

CVE-2019-12446

Gitlab GitLab 2020-03-10 CVSS v3.1
CVSS
7.5

Description

An issue was discovered in GitLab Community and Enterprise Edition 8.3 through 11.11. It allows Information Exposure through an Error Message.

Summary dbcve.org

Information Exposure vulnerability in GitLab Community and Enterprise Edition versions 8.3 through 11.11 allows attackers to obtain sensitive information through crafted error messages.

Mitigation

Upgrade GitLab to the latest patched version to remediate this vulnerability.

Weakness (CWE)

CWE-209

EPSS Score

1.16%
Probability of exploitation in next 30 days
65.6th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE