← back
CVE-2019-15591CWE-284

CVE-2019-15591

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 1.1%
exploitation probability
1.1%top 35% of all CVEs
observed exploitation
nono source reports it
An improper access control vulnerability exists in GitLab <12.3.3 that allows an attacker to obtain container and dependency scanning reports through the merge request widget even though public pipelines were disabled.
Affected products
n/a · GitLab