Project Import API Bypasses Visibility Restrictions in GitLab Community and Enterprise Edition 12.2 through 12.2.1

Project Import API Bypasses Visibility Restrictions in GitLab Community and Enterprise Edition 12.2 through 12.2.1

CVE-2019-15732 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

An issue was discovered in GitLab Community and Enterprise Edition 12.2 through 12.2.1. The project import API could be used to bypass project visibility restrictions.

Learn more about our Api Penetration Testing.