An issue was discovered in GitLab 10.7.0 and later through 12.9.2. A Workhorse bypass could lead to job artifact uploads and file disclosure (Exposure of Sensitive Information) via request smuggling.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-11506.json"