{"id":"CVE-2020-12448","details":"GitLab EE 12.8 and later allows Exposure of Sensitive Information to an Unauthorized Actor via NuGet.","aliases":["BIT-gitlab-2020-12448"],"modified":"2026-08-27T19:33:34.290156Z","published":"2020-05-07T17:15:11.713Z","references":[{"type":"ADVISORY","url":"https://about.gitlab.com/blog/categories/releases/"},{"type":"ADVISORY","url":"https://about.gitlab.com/releases/2020/04/30/security-release-12-10-2-released/"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://gitlab.com/gitlab-org/gitlab","events":[{"introduced":"0bd32f788647bb832f3d9eb5746cbda5300e0fa2"},{"fixed":"1b5307ff6f26b9eb32fa0b1c676a85e7f16ebe29"}],"database_specific":{"cpe":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*","extracted_events":[{"introduced":"12.8.0"},{"fixed":"12.8.10"}],"source":"CPE_RANGE"}}],"versions":["v12.8.5-ee","v12.8.3-ee","v12.8.7-ee","v12.8.4-ee","v12.8.1-ee","v12.8.0-ee"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-12448.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"}]}