CVE-2019-16170 (NVD)

2019-09-16

An issue was discovered in GitLab Enterprise Edition 11.x and 12.x before 12.0.9, 12.1.x before 12.1.9, and 12.2.x before 12.2.5. It has Incorrect Access Control.

Products Gitlab
Type Incorrect Permission Assignment for Critical Resource (CWE-732)
First patch - None (likely due to unavailable code)
Links https://about.gitlab.com/2019/09/10/critical-security-release-gitlab-12-dot-2-dot-5-released/