ZeroHour

CVE-2020-10087

CVSS 3.1
7.5 high
EPSS
1%p66
Published
()
Modified
Description

GitLab before 12.8.2 allows Information Disclosure. Badge images were not being proxied, causing mixed content warnings as well as leaking the IP address of the user.

Vendors
gitlab
Products
gitlab
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.