CVE-2019-9221: Input Validation
Published May 29, 2019
·Updated
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control (issue 3 of 5).
Affected Software
6 affected components
GitLab GitLab<11.6.10
GitLab GitLab<11.6.10
GitLab GitLab>=11.7.0<11.7.6
GitLab GitLab>=11.7.0<11.7.6
GitLab GitLab>=11.8.0<11.8.1
GitLab GitLab>=11.8.0<11.8.1
Event History
May 29, 2019
CVE Published
via MITRE·04:06 PM
Data Sourced
via MITRE·04:06 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-9221?
The severity of CVE-2019-9221 is classified as high due to the incorrect access control vulnerability.
2
How do I fix CVE-2019-9221?
To fix CVE-2019-9221, you need to upgrade GitLab to version 11.6.10 or later for community and enterprise editions.
3
What versions are affected by CVE-2019-9221?
CVE-2019-9221 affects GitLab Community and Enterprise Editions before version 11.6.10, and versions 11.7.0 to 11.7.5, and 11.8.0 to 11.8.0.
4
What type of vulnerability is CVE-2019-9221?
CVE-2019-9221 is categorized as an incorrect access control vulnerability.
5
Is CVE-2019-9221 specific to GitLab Community Edition?
No, CVE-2019-9221 affects both GitLab Community Edition and Enterprise Edition.