/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2019-15580

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2019-15580

Severity

6.5

Medium

CVSS V3

Description

An information exposure vulnerability exists in gitlab.com <v12.3.2, <v12.2.6, and <v12.1.10 when using the blocking merge request feature, it was possible for an unauthenticated user to see the head pipeline data of a public project even though pipeline visibility was restricted.

References

  • https://images.chainguard.dev/security/CGA-rc8x-x4jv-342c

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing