Gitlab · Gitlab Ce/Ee · CVE-2019-12432
Name of the Vulnerable Software and Affected Versions:
GitLab Community and Enterprise Edition versions 8.13 through 11.11
Description:
An issue allows non-member users who subscribed to issue notifications to access the title of confidential issues through the unsubscription page, resulting in information disclosure.
Recommendations:
For GitLab Community and Enterprise Edition versions 8.13 through 11.11, update to a version that contains a fix for this issue to prevent information disclosure.