GitLab::API::v4 through 0.26 does not verify TLS certificates when connecting to a GitLab server, enabling machine-in-the-middle attacks.
{ "binaries": [ { "binary_version": "0.04-2", "binary_name": "libgitlab-api-v4-perl" } ] }
{ "binaries": [ { "binary_version": "0.25-1", "binary_name": "libgitlab-api-v4-perl" } ] }
{ "binaries": [ { "binary_version": "0.26-1", "binary_name": "libgitlab-api-v4-perl" } ] }