CVE-2020-13272

Publication date

2020-06-19 21:40:04

Family

GitLab

State

PUBLISHED

Description

OAuth flow missing verification checks CE/EE 12.3 and later through 13.0.1 allows unverified user to use OAuth authorization code flow