CVE-2019-18456: GitLab
Medium severity, CVSS 5.3. EPSS: 0.9% chance of exploitation in the next 30 days.
An issue was discovered in GitLab Community and Enterprise Edition 8.17 through 12.4 in the Search feature provided by Elasticsearch integration.. It has Insecure Permissions (issue 1 of 4).
Affected products
- GitLab GitLab: from 8.17.0, up to and including 12.4.0
Published 2019-11-26. Last modified 2026-06-17.