CVE-2019-15723

An issue was discovered in GitLab Community and Enterprise Edition 11.9.x and 11.10.x before 11.10.1. Merge requests created by email could be used to bypass push rules in certain situations.

packagechannelchannel versionpkg versionstatus
gitlab
nixos-18.09
2019-05-19 13:10:54 UTC (a7e559)11.9.8vulnerable
2019-05-18 12:10:27 UTC (87f146)11.9.8vulnerable
2019-05-11 21:00:36 UTC (1e9e70)11.9.8vulnerable
2019-05-10 17:45:25 UTC (6cd060)11.9.8vulnerable
2019-05-09 00:00:40 UTC (7413c8)11.9.8vulnerable
2019-05-06 03:50:44 UTC (c2a650)11.9.8vulnerable
2019-05-05 19:25:21 UTC (8b166e)11.9.8vulnerable
2019-05-05 03:15:34 UTC (9e149f)11.9.8vulnerable
2019-05-04 01:55:24 UTC (a48371)11.9.8vulnerable
2019-05-03 20:15:20 UTC (f21323)11.9.8vulnerable
2019-05-02 07:55:47 UTC (412455)11.9.8vulnerable
2019-04-30 22:55:30 UTC (ca6a1a)11.9.8vulnerable
2019-04-23 17:45:19 UTC (571b40)11.9.8vulnerable
nixos-19.03
2019-05-06 22:45:43 UTC (8c6c85)11.9.11vulnerable
2019-05-06 19:05:39 UTC (6ec097)11.9.11vulnerable
2019-05-05 20:50:42 UTC (a177da)11.9.11vulnerable
2019-05-05 11:55:39 UTC (6e29f2)11.9.11vulnerable
2019-05-05 08:25:33 UTC (04954e)11.9.11vulnerable
2019-05-02 22:00:31 UTC (915ce0)11.9.11vulnerable
2019-05-02 14:05:46 UTC (2e6afa)11.9.11vulnerable
2019-05-02 10:40:42 UTC (b2b5c1)11.9.8vulnerable
2019-05-01 17:25:26 UTC (d740b2)11.9.8vulnerable
2019-04-30 23:15:17 UTC (6d7ed9)11.9.8vulnerable
2019-04-25 16:05:41 UTC (cf3e27)11.9.8vulnerable
2019-04-24 14:30:20 UTC (2f1eac)11.9.8vulnerable
2019-04-24 10:40:27 UTC (893541)11.9.8vulnerable
2019-04-23 19:20:27 UTC (793640)11.9.8vulnerable
nixos-unstable
2019-05-06 20:05:48 UTC (24debf)11.9.11vulnerable
2019-05-06 09:35:46 UTC (d457e3)11.9.11vulnerable
2019-05-03 17:40:38 UTC (190727)11.9.11vulnerable
2019-04-30 23:35:46 UTC (aeb464)11.9.8vulnerable
2019-04-25 16:30:32 UTC (dfd8f8)11.9.8vulnerable
2019-04-24 12:55:41 UTC (0620e0)11.9.8vulnerable