HIGH
CVE-2019-12446
CVSS
7.5
Description
An issue was discovered in GitLab Community and Enterprise Edition 8.3 through 11.11. It allows Information Exposure through an Error Message.
Summary dbcve.org
Information Exposure vulnerability in GitLab Community and Enterprise Edition versions 8.3 through 11.11 allows attackers to obtain sensitive information through crafted error messages.
Mitigation
Upgrade GitLab to the latest patched version to remediate this vulnerability.
Weakness (CWE)
CWE-209
EPSS Score
1.16%
Probability of exploitation in next 30 days
65.6th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.