Security Advisory

CVE-2019-15591

6.5
MEDIUM

Vulnerability Description

An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.
Published Date December 18, 2019
Official Source NIST NVD Advisory