CVE-2019-9866: Infoleak
Published May 29, 2019
·Updated
An issue was discovered in GitLab Community and Enterprise Edition 11.x before 11.7.7 and 11.8.x before 11.8.3. It allows Information Disclosure.
Affected Software
4 affected components
GitLab GitLab>=11.0.0<11.7.7
GitLab GitLab>=11.0.0<11.7.7
GitLab GitLab>=11.8.0<11.8.3
GitLab GitLab>=11.8.0<11.8.3
Event History
May 29, 2019
CVE Published
via MITRE·04:28 PM
Data Sourced
via MITRE·04:28 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-9866?
CVE-2019-9866 is classified as having a medium severity due to its potential for information disclosure.
2
How do I fix CVE-2019-9866?
To remediate CVE-2019-9866, upgrade GitLab to versions 11.7.7 or 11.8.3 or later.
3
What versions are affected by CVE-2019-9866?
CVE-2019-9866 affects GitLab Community and Enterprise Edition versions prior to 11.7.7 and 11.8.3.
4
What type of vulnerability is CVE-2019-9866?
CVE-2019-9866 is an information disclosure vulnerability that may expose sensitive data.
5
Who is impacted by CVE-2019-9866?
Organizations using affected versions of GitLab Community or Enterprise Editions are impacted by CVE-2019-9866.