An issue exists in GitLab Community and Enterprise Edition 11.9.x and 11.10.x prior to 11.10.1. Merge requests created by email could be used to bypass push rules in certain situations.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gitlab gitlab |