CVE-2018-19583
EUVD-2018-1127210.07.2019, 17:15
GitLab CE/EE, versions 8.0 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, would log access tokens in the Workhorse logs, permitting administrators with access to the logs to see another user's token.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gitlab | gitlab | 8.0.0 ≤ 𝑥 < 11.3.11 |
| gitlab | gitlab | 8.0.0 ≤ 𝑥 < 11.3.11 |
| gitlab | gitlab | 11.4.0 ≤ 𝑥 < 11.4.8 |
| gitlab | gitlab | 11.4.0 ≤ 𝑥 < 11.4.8 |
| gitlab | gitlab | 11.5.0 ≤ 𝑥 < 11.5.1 |
| gitlab | gitlab | 11.5.0 ≤ 𝑥 < 11.5.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References