Security Advisory

CVE-2019-5486

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-12-18 20:58:42
Last updated 2024-08-04 19:54:53
Assigner hackerone
CVSS score not scored
State PUBLISHED

Description

A authentication bypass vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.10 in the Salesforce login integration that could be used by an attacker to create an account that bypassed domain restrictions and email verification requirements.