cve/2019/CVE-2019-5487.md
2025-09-29 21:09:30 +02:00

820 B

CVE-2019-5487

Description

An improper access control vulnerability exists in Gitlab EE <v12.3.3, <v12.2.7, & <v12.1.13 that allowed the group search feature with Elasticsearch to return private code, merge requests and commits.

POC

Reference

Github