CVE-2020-13295
10.08.2020, 14:15
For GitLab Runner before 13.0.12, 13.1.6, 13.2.3, by replacing dockerd with a malicious server, the Shared Runner is susceptible to SSRF.
Vendor | Product | Version |
---|---|---|
gitlab | runner | 1.0 ≤ 𝑥 < 13.0.12 |
gitlab | runner | 13.1 ≤ 𝑥 < 13.1.6 |
gitlab | runner | 13.2 ≤ 𝑥 < 13.2.3 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References