Low severity3.5NVD Advisory· Published Sep 9, 2019· Updated Jun 17, 2026
CVE-2019-5461
CVE-2019-5461
Description
An input validation problem was discovered in the GitHub service integration which could result in an attacker being able to make arbitrary POST requests in a GitLab instance's internal network. This vulnerability was addressed in 12.1.2, 12.0.4, and 11.11.6.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*+ 2 more
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*range: >=11.11.0,<11.11.7
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: >=11.11.0,<11.11.7
- (no CPE)range: before 12.1.2, 12.0.4, and 11.11.6
- GitLab/GitHub service integrationdescription
Patches
Vulnerability mechanics
References
3- gitlab.com//gitlab-org/gitlab-ce/issues/54649nvdExploitVendor Advisory
- about.gitlab.com/2019/07/29/security-release-gitlab-12-dot-1-dot-2-released/nvdVendor Advisory
- hackerone.com/reports/446593nvdThird Party Advisory
News mentions
0No linked articles in our index yet.