CVE-2020-13266: GitLab

Medium severity, CVSS 4.3. EPSS: 0.6% chance of exploitation in the next 30 days.

Insecure authorization in Project Deploy Keys in GitLab CE/EE 12.8 and later through 13.0.1 allows users to update permissions of other users' deploy keys under certain conditions

Affected products

  • GitLab GitLab: from 12.8, up to and including 13.0.1

Published 2020-06-09. Last modified 2026-06-17.