CVE-2019-20144: Medium severity gitlab vulnerability
Published Jan 13, 2020
·Updated
An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 10.8 through 12.6.1. It has Incorrect Access Control.
Affected Software
2 affected components
GitLab GitLab>=10.8.0<=12.6.1
GitLab GitLab>=10.8.0<=12.6.1
Event History
Jan 13, 2020
CVE Published
via MITRE·08:01 PM
Data Sourced
via MITRE·08:01 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20144?
CVE-2019-20144 has been classified as a medium severity vulnerability due to incorrect access control.
2
How do I fix CVE-2019-20144?
To fix CVE-2019-20144, users should upgrade to GitLab Community Edition or Enterprise Edition version 12.6.2 or later.
3
What versions are affected by CVE-2019-20144?
CVE-2019-20144 affects GitLab Community and Enterprise Editions from version 10.8 to 12.6.1.
4
What type of vulnerability is CVE-2019-20144?
CVE-2019-20144 is classified as an Incorrect Access Control vulnerability.
5
Who is impacted by CVE-2019-20144?
Users of GitLab Community and Enterprise Editions between versions 10.8 and 12.6.1 are impacted by CVE-2019-20144.