Medium severity5.3NVD Advisory· Published Mar 13, 2020· Updated Jun 17, 2026
CVE-2020-10090
CVE-2020-10090
Description
GitLab 11.7 through 12.8.1 allows Information Disclosure. Under certain group conditions, group epic information was unintentionally being disclosed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*+ 2 more
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*range: >=11.7.0,<=12.8.1
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: >=11.7.0,<=12.8.1
- (no CPE)range: 11.7 - 12.8.1
- GitLab/GitLabdescription
Patches
Vulnerability mechanics
References
2- about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/nvdRelease NotesVendor Advisory
- about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/index.htmlnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.