CVE-2020-10976: GitLab
High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.
GitLab EE/CE 8.17 to 12.9 is vulnerable to information leakage when querying a merge request widget.
Affected products
- GitLab GitLab: from 8.17.0, up to and including 12.9
Published 2020-04-08. Last modified 2026-06-17.