CVE-2019-15594: GitLab

Medium severity, CVSS 4.3. EPSS: 0.8% chance of exploitation in the next 30 days.

GitLab 11.8 and later contains a security vulnerability that allows a user to obtain details of restricted pipelines via the merge request endpoint.

Affected products

  • GitLab GitLab: up to and including 11.8

Published 2020-02-14. Last modified 2026-06-17.