VDB
CVE-2019-15740
CVE-2019-15740
PUBLISHED
CVSS 5.300000190734863 MEDIUM
An issue was discovered in GitLab Community and Enterprise Edition 7.9 through 12.2.1. EXIF Geolocation data was not being removed from certain image uploads.
EPSS 1.61% · 73.9th percentile
Risk Scores
CVSS 3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
1.61%
73.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:16.04:LTS | gitlab | 0, 8.4.3+dfsg-12, 8.5.8+dfsg-5 |
Timeline
- Sep 16, 2019 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Dec 28, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Mar 1, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 2, 2022 EPSS Score
- Jul 4, 2022 EPSS Score
- Nov 8, 2022 EPSS Score
- Jan 9, 2023 EPSS Score
References
- https://ubuntu.com/security/CVE-2019-15740 third-party-advisory
- https://about.gitlab.com/2019/08/29/security-release-gitlab-12-dot-2-dot-3-released/ third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2019-15740 third-party-advisory