vulnerability

FreeBSD: VID-6eddfa51-fb44-11e9-86e9-001b217b3468 (CVE-2019-18451): Gitlab -- Disclosure Vulnerabilities

Severity
6
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:N)
Published
Oct 30, 2019
Added
Dec 10, 2025
Modified
Dec 10, 2025

Description

Gitlab reports: Source branch of a MR could be removed by an unauthorised user Private group members could be listed Disclosure of System Notes via Elasticsearch integration Disclosure of Private Comments via Elasticsearch integration Confirm existence of private repositories Private group membership could be disclosed Disclosure of Project Labels Disclosure of Private Project Path and Labels Uncontrolled Resource Consumption due to Nested GraphQL Queries Improper access control on comments Sentry Token Access Control Authorisation check for Project Transfer option XSS in Wiki Pages Using RDoc Untrusted Input could be used for Internal Redirect Access control for protected environments Private Sub Group path Disclosure Disclosure of Group Packages List Private Repository Name Disclosure

Solution

freebsd-upgrade-package-gitlab-ce
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.