AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-13297

LOW · CVSS 3.8 EPSS 1.03%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-09-14 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 3.8. It affects GitLab.

CVE
CVE-2020-13297
Severity
LOW
CVSS
3.8
EPSS
1.03%
GitLab

Original NVD Description

A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. When 2 factor authentication was enabled for groups, a malicious user could bypass that restriction by sending a specific query to the API endpoint.

Related CVEs

Other vulnerabilities affecting the same vendor(s)