Total vulnerabilities in the database
An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Non-members were able to comment on merge requests despite the repository being set to allow only project members to do so.
Software | From | Fixed in |
---|---|---|
gitlab / gitlab | 12.2.0 | 12.2.3 |
gitlab / gitlab | 12.1.0 | 12.1.8 |
gitlab / gitlab | 12.0.0 | 12.0.8 |