Critical severity9.8NVD Advisory· Published Mar 27, 2020· Updated Jun 17, 2026
CVE-2020-10956
CVE-2020-10956
Description
GitLab 8.10 and later through 12.9 is vulnerable to an SSRF in a project import note feature.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5>=8.10.0 <12.9.1+ 2 more
- (no CPE)range: >=8.10.0 <12.9.1
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*range: >=8.10.0,<12.9.1
- cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: >=8.10.0,<12.9.1
- GitLab/GitLabdescription
Patches
Vulnerability mechanics
References
2- about.gitlab.com/releases/2020/03/26/security-release-12-dot-9-dot-1-released/nvdRelease NotesVendor Advisory
- about.gitlab.com/releases/categories/releases/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.