HTTP Request Smuggling in Gitlab Community Edition and GitLab Enterprise Edition - CVE-2020-11506
Published: April 23, 2020
Gitlab Community Edition
GitLab Enterprise Edition
Detailed vulnerability description
The vulnerability allows a remote attacker to perform HTTP request smuggling attack.
The vulnerability exists due to a particular header can be used to override restrictions and results in GitLab Workhorse disclosing job artifact uploads and files in the "/tmp" directory. A remote attacker can send a specially crafted HTTP request to the application, perform a request smuggling attack and gain access to sensitive information on the target system.