vulnerability
FreeBSD: VID-6eddfa51-fb44-11e9-86e9-001b217b3468 (CVE-2019-18463): Gitlab -- Disclosure Vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:L/Au:S/C:P/I:N/A:N) | Oct 30, 2019 | Dec 10, 2025 | Dec 10, 2025 |
Severity
4
CVSS
(AV:N/AC:L/Au:S/C:P/I:N/A:N)
Published
Oct 30, 2019
Added
Dec 10, 2025
Modified
Dec 10, 2025
Description
Gitlab reports: Source branch of a MR could be removed by an unauthorised user Private group members could be listed Disclosure of System Notes via Elasticsearch integration Disclosure of Private Comments via Elasticsearch integration Confirm existence of private repositories Private group membership could be disclosed Disclosure of Project Labels Disclosure of Private Project Path and Labels Uncontrolled Resource Consumption due to Nested GraphQL Queries Improper access control on comments Sentry Token Access Control Authorisation check for Project Transfer option XSS in Wiki Pages Using RDoc Untrusted Input could be used for Internal Redirect Access control for protected environments Private Sub Group path Disclosure Disclosure of Group Packages List Private Repository Name Disclosure
Solution
freebsd-upgrade-package-gitlab-ce
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.