CVE-2020-10081

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*

History

No history.

Information

Published : 2020-03-13 17:15

Updated : 2024-02-28 17:47


NVD link : CVE-2020-10081

Mitre link : CVE-2020-10081

CVE.ORG link : CVE-2020-10081


JSON object : View

Products Affected

gitlab

  • gitlab