Medium severity5.3NVD Advisory· Published Jan 3, 2020· Updated Jun 17, 2026
CVE-2019-19254
CVE-2019-19254
Description
GitLab Community Edition (CE) and Enterprise Edition (EE). 9.6 and later through 12.5 has Incorrect Access Control.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*+ 1 more
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*range: >=9.6.0,<12.5.1
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: >=9.6.0,<12.5.1
- GitLab/GitLab Community Edition (CE) and Enterprise Edition (EE)description
- Range: >=9.6 and <=12.5
- Range: >=9.6 and <=12.5
Patches
Vulnerability mechanics
References
3- about.gitlab.com/blog/2019/11/27/security-release-gitlab-12-5-1-released/nvdRelease NotesVendor Advisory
- about.gitlab.com/blog/categories/releases/nvdRelease NotesVendor Advisory
- gitlab.com/gitlab-org/gitlab/issues/12219nvdBroken LinkVendor Advisory
News mentions
0No linked articles in our index yet.