VYPR
Medium severity4.3NVD Advisory· Published Sep 9, 2019· Updated Jun 17, 2026

CVE-2019-6789

CVE-2019-6789

Description

An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows Information Disclosure (issue 4 of 6). In some cases, users without project permissions will receive emails after a project move. For private projects, this will disclose the new project namespace to an unauthorized user.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*+ 2 more
    • cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*range: >=6.5.0,<11.5.8
    • cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: >=6.5.0,<11.5.8
    • (no CPE)range: <11.5.8, 11.6.x <11.6.6, 11.7.x <11.7.1
  • GitLab/GitLab Community and Enterprise Editiondescription
  • Range: <11.5.8, 11.6.x <11.6.6, 11.7.x <11.7.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.