VYPR
Medium severity6.5NVD Advisory· Published Dec 18, 2019· Updated Jun 17, 2026

CVE-2019-15591

CVE-2019-15591

Description

An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.

Affected products

8

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.