Lucene search

K
osvGoogleOSV:CVE-2019-6788
HistorySep 09, 2019 - 8:15 p.m.

CVE-2019-6788

2019-09-0920:15:11
Google
osv.dev
1

6.3 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

60.0%

An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It allows Information Disclosure (issue 3 of 6). For installations using GitHub or Bitbucket OAuth integrations, it is possible to use a covert redirect to obtain the user OAuth token for those services.

CPENameOperatorVersion
gitlabeq11.7.0-ee

6.3 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

60.0%