Medium severity5.8NVD Advisory· Published Jan 5, 2020· Updated Jun 17, 2026
CVE-2019-19312
CVE-2019-19312
Description
GitLab EE 8.14 through 12.5, 12.4.3, and 12.3.6 has Incorrect Access Control. After a project changed to private, previously forked repositories were still able to get information about the private project through the API.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- GitLab/GitLab EEdescription
- Range: 8.14 - 12.5, 12.4.3, 12.3.6
Patches
Vulnerability mechanics
References
3- about.gitlab.com/blog/2019/11/27/security-release-gitlab-12-5-1-released/nvdVendor Advisory
- about.gitlab.com/blog/categories/releases/nvdRelease Notes
- gitlab.com/gitlab-org/gitlab/issues/28802nvdBroken Link
News mentions
0No linked articles in our index yet.