CVE-2019-15591
18.12.2019, 21:15
An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gitlab | gitlab | 𝑥 < 12.3.3 |
| gitlab | gitlab | 𝑥 < 12.3.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration