An issue was discovered in GitLab EE 11.3 and later. A GitLab Workhorse bypass could lead to package and file disclosure via request smuggling.
Link | Tags |
---|---|
https://about.gitlab.com/blog/categories/releases/ | release notes vendor advisory |
https://about.gitlab.com/releases/2020/01/30/security-release-gitlab-12-7-4-released/ | release notes vendor advisory |