← Back

CVE-2019-14942

nvd nist
Published: Apr 16, 2023Modified: Feb 6, 2025

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Cookies for GitLab Pages (which have access control) could be sent over cleartext HTTP.

Affected (6)

Products: Gitlab: Gitlab
1 product
Gitlab
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Gitlab
Before 11.11.8
From 12.0.0 to 12.0.6
From 12.1.0 to 12.1.6
Before 11.11.8
From 12.0.0 to 12.0.6
From 12.1.0 to 12.1.6

References (6)

Timeline

No history available yet.