/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2020-10087

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2020-10087

Severity

7.5

High

CVSS V3

Description

GitLab before 12.8.2 allows Information Disclosure. Badge images were not being proxied, causing mixed content warnings as well as leaking the IP address of the user.

References

  • https://images.chainguard.dev/security/CGA-22mf-2mw3-mfrg

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing