Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities HKCERT

GitLab Multiple Vulnerabilities

Multiple vulnerabilities in GitLab allow a remote attacker to exploit issues leading to information disclosure, data manipulation, cross-site scripting, and security restriction bypass. Affected versions are GitLab CE and EE versions prior to 19.1.1, 19.0.3, and 18.11.6. The solution is to apply the vendor-provided fixes by upgrading to one of these patched versions.
Read Full Article →

Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit some of these vulnerabilities to trigger sensitive information disclosure, data manipulation, cross-site scripting and security restriction bypass on the targeted system. Impact Information Disclosure Security Restriction Bypass Data Manipulation Cross-Site Scripting System / Technologies affected GitLab Community Edition (CE) versions prior to 19.1.1, 19.0.3, 18.11.6 GitLab Enterprise Edition (EE) versions prior to 19.1.1, 19.0.3, 18.11.6 Solutions Before installation of the software, please visit the vendor web-site for more details. Apply fixes issued by the vendor: https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-1-1-released/

Share this article