CVE-2020-13358: GitLab
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
A vulnerability in the internal Kubernetes agent api in GitLab CE/EE version 13.3 and above allows unauthorized access to private projects. Affected versions are: >=13.4, <13.4.5,>=13.3, <13.3.9,>=13.5, <13.5.2.
Affected products
- GitLab GitLab: from 13.3.0, before 13.3.9 (fixed in 13.3.9); from 13.3.0, up to and including 13.3.9; from 13.4.0, before 13.4.5 (fixed in 13.4.5); from 13.5.0, before 13.5.2 (fixed in 13.5.2)
Published 2020-11-17. Last modified 2026-06-17.