First published: Wed Apr 08 2020(Updated: )
GitLab EE/CE 10.8 to 12.9 is leaking metadata and comments on vulnerabilities to unauthorized users on the vulnerability feedback page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GitLab | >=10.8.0<=12.9 | |
GitLab | >=10.8.0<=12.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-10975 has a medium severity rating as it involves unauthorized information exposure.
To address CVE-2020-10975, update GitLab to version 12.9.1 or later.
CVE-2020-10975 affects GitLab EE/CE versions from 10.8 to 12.9.
CVE-2020-10975 leaks vulnerability metadata and comments to unauthorized users.
Yes, CVE-2020-10975 affects both GitLab Community Edition and Enterprise Edition.