CVE-2019-11545: Infoleak
An issue was discovered in GitLab Community Edition 11.9.x before 11.9.10 and 11.10.x before 11.10.2. It allows Information Disclosure. When an issue is moved to a private project, the private project namespace is leaked to unauthorized users with access to the original issue.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-11545?
CVE-2019-11545 is considered a medium severity vulnerability due to its potential for information disclosure.
How do I fix CVE-2019-11545?
To fix CVE-2019-11545, update GitLab to version 11.9.10 or 11.10.2 or later.
What type of vulnerability is CVE-2019-11545?
CVE-2019-11545 is categorized as an Information Disclosure vulnerability.
Who is affected by CVE-2019-11545?
CVE-2019-11545 affects users of GitLab Community Edition and Enterprise Edition versions before 11.9.10 and 11.10.2.
What happens if CVE-2019-11545 is exploited?
Exploitation of CVE-2019-11545 can lead to unauthorized users gaining access to private project namespaces.