An issue exists in GitLab Community and Enterprise Edition 8.15 up to and including 12.4 in the Comments Search feature provided by the Elasticsearch integration. It has Incorrect Access Control.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gitlab gitlab |