CVEs Blog | G5 Cyber Security

CVE-2020-26415 – Information about the starred projects for private user profiles was expo

Information about the starred projects for private user profiles was exposed via the GraphQL API starting from 12.2 via the REST API. This affects GitLab >=12.2 to <13.4.7, >=13.5 to <13.5.5, and >=13.6 to <13.6.2.   Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26415 Reference (s):

Exit mobile version