CVE-2025-4225
- EPSS 0.37%
- Veröffentlicht 27.08.2025 19:33:45
- Zuletzt bearbeitet 02.09.2025 17:48:43
An issue has been discovered in GitLab CE/EE affecting all versions from 14.1 before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that that under certain conditions could have allowed an unauthenticated attacker to cause a denial-of-service con...
- EPSS 0.13%
- Veröffentlicht 27.08.2025 19:33:36
- Zuletzt bearbeitet 02.09.2025 17:47:34
An issue has been discovered in GitLab CE/EE affecting all versions before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that under certain conditions could have allowed an authenticated attacker to distribute malicious code that appears harmles...
CVE-2024-10219
- EPSS 0.42%
- Veröffentlicht 13.08.2025 17:28:00
- Zuletzt bearbeitet 14.08.2025 17:53:47
An issue has been discovered in GitLab CE/EE affecting all versions from 15.6 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that under certain conditions could have allowed authenticated users to bypass access controls and download privat...
CVE-2024-12303
- EPSS 0.4%
- Veröffentlicht 13.08.2025 17:27:45
- Zuletzt bearbeitet 15.08.2025 16:24:44
An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that under certain conditions could have allowed authenticated users with specific roles and permissions to delete...
CVE-2025-1477
- EPSS 0.45%
- Veröffentlicht 13.08.2025 17:27:25
- Zuletzt bearbeitet 15.08.2025 16:24:55
An issue has been discovered in GitLab CE/EE affecting all versions from 8.14 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed an unauthenticated user to create a denial of service condition by sending specially craft...
CVE-2025-2498
- EPSS 0.25%
- Veröffentlicht 13.08.2025 17:27:10
- Zuletzt bearbeitet 15.08.2025 16:25:17
An improper access control in Gitlab EE affecting all versions from 12.0 prior to 18.0.6, 18.1 prior to 18.1.4, and 18.2 prior to 18.2.2 that under certain conditions could have allowed users to view assigned issues from restricted groups by bypassin...
CVE-2025-2614
- EPSS 0.36%
- Veröffentlicht 13.08.2025 17:27:00
- Zuletzt bearbeitet 15.08.2025 16:30:52
An issue has been discovered in GitLab CE/EE affecting all versions from 11.6 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed an authenticated user to cause a denial of service condition by creating specially crafted...
CVE-2025-2937
- EPSS 0.36%
- Veröffentlicht 13.08.2025 17:26:55
- Zuletzt bearbeitet 15.08.2025 16:31:10
An issue has been discovered in GitLab CE/EE affecting all versions from 13.2 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed authenticated users to create a denial of service condition by sending specially crafted m...
- EPSS 0.23%
- Veröffentlicht 13.08.2025 17:26:45
- Zuletzt bearbeitet 29.08.2025 17:15:36
An issue has been discovered in GitLab CE/EE affecting all versions from 15.7 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed authenticated users with developer access to obtain ID tokens for protected branches under...
CVE-2025-6186
- EPSS 0.3%
- Veröffentlicht 13.08.2025 17:26:35
- Zuletzt bearbeitet 15.08.2025 16:33:10
An issue has been discovered in GitLab CE/EE affecting all versions from 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed authenticated users to achieve account takeover by injecting malicious HTML into work item names.