In GitLab Enterprise Edition (EE) 12.5.0 through 12.7.5, sharing a group with a group could grant project access to unauthorized users.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-8795.json"