CVE-2019-15591
18.12.2019, 21:15
An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.Enginsight
Vendor | Product | Version |
---|---|---|
gitlab | gitlab | 𝑥 < 12.3.3 |
gitlab | gitlab | 𝑥 < 12.3.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration