CVE-2020-26207: Deserialization of Untrusted Data
(updated )
DatabaseSchemaViewer
is vulnerable to arbitrary code execution if a user is tricked into opening a specially crafted .dbschema
file. As a workaround, ensure .dbschema
files from untrusted sources are not opened.
References
Detect and mitigate CVE-2020-26207 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →