CVE-2020-12448: GitLab

Medium severity, CVSS 5.3. EPSS: 1.3% chance of exploitation in the next 30 days.

GitLab EE 12.8 and later allows Exposure of Sensitive Information to an Unauthorized Actor via NuGet.

Affected products

  • GitLab GitLab: from 12.8.0, before 12.8.10 (fixed in 12.8.10)

Published 2020-05-07. Last modified 2026-06-17.