CVE-2019-15723

An issue was discovered in GitLab Community and Enterprise Edition 11.9.x and 11.10.x before 11.10.1. Merge requests created by email could be used to bypass push rules in certain situations.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*

History

No history.

Information

Published : 2019-09-16 17:15

Updated : 2023-12-10 12:59


NVD link : CVE-2019-15723

Mitre link : CVE-2019-15723

CVE.ORG link : CVE-2019-15723


JSON object : View

Products Affected

gitlab

  • gitlab
CWE
CWE-862

Missing Authorization