CVE-2020-7976: GitLab
Medium severity, CVSS 5.3. EPSS: 0.9% chance of exploitation in the next 30 days.
GitLab EE 12.4 and later through 12.7.2 has Incorrect Access Control.
Affected products
- GitLab GitLab: from 12.4.0, before 12.5.9 (fixed in 12.5.9); from 12.6.0, before 12.6.6 (fixed in 12.6.6); from 12.7.0, up to and including 12.7.2
Published 2020-02-05. Last modified 2026-06-17.