CVE-2018-18648: Infoleak
An issue was discovered in GitLab Community and Enterprise Edition before 11.2.7, 11.3.x before 11.3.8, and 11.4.x before 11.4.3. It has Information Exposure Through an Error Message.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-18648?
CVE-2018-18648 has been classified as a medium severity vulnerability due to information exposure through error messages that can potentially disclose sensitive data.
How do I fix CVE-2018-18648?
To fix CVE-2018-18648, upgrade GitLab to version 11.2.7 or higher, 11.3.8 or higher, or 11.4.3 or higher.
Which versions of GitLab are affected by CVE-2018-18648?
CVE-2018-18648 affects GitLab Community and Enterprise Editions before versions 11.2.7, 11.3.8, and 11.4.3.
What type of vulnerability is CVE-2018-18648?
CVE-2018-18648 is categorized as an Information Exposure Through an Error Message vulnerability.
What are the consequences of CVE-2018-18648?
The consequences of CVE-2018-18648 may include unauthorized disclosure of sensitive information due to improper error handling.