CVE-2018-20507: Medium severity gitlab vulnerability
An issue was discovered in GitLab Enterprise Edition 11.2.x through 11.4.x before 11.4.13, 11.5.x before 11.5.6, and 11.6.x before 11.6.1. It has Incorrect Access Control.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-20507?
The severity of CVE-2018-20507 is categorized as high due to incorrect access control allowing unauthorized access.
How do I fix CVE-2018-20507?
To fix CVE-2018-20507, upgrade GitLab to version 11.4.13 or higher for 11.4.x, 11.5.6 or higher for 11.5.x, or 11.6.1 or higher for 11.6.x.
What versions of GitLab are affected by CVE-2018-20507?
CVE-2018-20507 affects GitLab Enterprise and Community Editions from versions 11.2.x to 11.4.x before 11.4.13, 11.5.x before 11.5.6, and 11.6.x before 11.6.1.
What type of vulnerability is CVE-2018-20507?
CVE-2018-20507 is an incorrect access control vulnerability that can enable unauthorized access to certain resources.
Is there a workaround for CVE-2018-20507?
There are no specific workarounds for CVE-2018-20507; upgrading to a secure version is recommended.