In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-01-05T21:51:51.000Z

Updated: 2024-08-05T02:25:12.032Z

Reserved: 2019-12-06T00:00:00.000Z

Link: CVE-2019-19628

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-01-05T22:15:11.173

Modified: 2024-11-21T04:35:05.323

Link: CVE-2019-19628

cve-icon Redhat

No data.