An issue was discovered in GitLab Community and Enterprise Edition 12.2 through 12.2.1. The project import API could be used to bypass project visibility restrictions.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Gitlab | Gitlab | 12.2.0 (including) | 12.2.3 (excluding) |
References