Improper authorization in GitLab 12.8+ allows a guest user in a private project to view tag data that should be inaccessible on the releases page
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-22172.json"