Medium severity5.3NVD Advisory· Published Jan 3, 2020· Updated Jun 17, 2026
CVE-2019-19257
CVE-2019-19257
Description
GitLab Community Edition (CE) and Enterprise Edition (EE) through 12.5 has Incorrect Access Control (issue 1 of 2).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*+ 1 more
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*range: <12.5.1
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: <12.5.1
- GitLab/GitLab Community Edition (CE) and Enterprise Edition (EE)description
- Range: <=12.5
- Range: <=12.5
- osv-coords4 versionspkg:apk/chainguard/gitlab-operatorpkg:apk/chainguard/gitlab-operator-chartspkg:apk/chainguard/gitlab-operator-compatpkg:apk/chainguard/gitlab-operator-fips
< 0+ 3 more
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
Patches
Vulnerability mechanics
References
2- about.gitlab.com/blog/2019/11/27/security-release-gitlab-12-5-1-released/nvdRelease NotesVendor Advisory
- about.gitlab.com/blog/categories/releases/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.