Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-14942


An issue was discovered in GitLab Community and Enterprise Edition before 11.11.8, 12 before 12.0.6, and 12.1 before 12.1.6. Cookies for GitLab Pages (which have access control) could be sent over cleartext HTTP.


Published

2023-04-16T00:15:07.190

Last Modified

2025-02-06T17:15:10.857

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.9 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-319
  • Type: Secondary
    CWE-319

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application gitlab gitlab < 11.11.8 Yes
Application gitlab gitlab < 11.11.8 Yes
Application gitlab gitlab < 12.0.6 Yes
Application gitlab gitlab < 12.0.6 Yes
Application gitlab gitlab < 12.1.6 Yes
Application gitlab gitlab < 12.1.6 Yes

References