Private group info is leaked leaked in GitLab CE/EE version 10.2 and above, when the project is moved from private to public group. Affected versions are: >=10.2, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.
{ "severity": "Medium", "cpes": [ "cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*", "cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*", "cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:*", "cpe:2.3:a:gitlab:gitlab:10.2:*:*:*:*:*:*:*", "cpe:2.3:a:gitlab:gitlab:10.2:*:*:*:enterprise:*:*:*", "cpe:2.3:a:gitlab:gitlab:13.4:*:*:*:*:*:*:*", "cpe:2.3:a:gitlab:gitlab:13.4:*:*:*:enterprise:*:*:*", "cpe:2.3:a:gitlab:gitlab:13.5:*:*:*:*:*:*:*", "cpe:2.3:a:gitlab:gitlab:13.5:*:*:*:enterprise:*:*:*" ] }