CVE-2020-10535

Publication date

2020-03-12 22:25:52

Family

mitre

State

PUBLISHED

Description

GitLab 12.8.x before 12.8.6, when sign-up is enabled, allows remote attackers to bypass email domain restrictions within the two-day grace period for an unconfirmed email address.