Total vulnerabilities in the database
GitLab 12.3.5 through 12.8.1 allows Information Disclosure. A particular view was exposing merge private merge request titles.
CVSS v3:
CVSS v2:
No CWE or OWASP classifications available.