CVE-2025-10094
- EPSS 0.04%
- Veröffentlicht 12.09.2025 04:57:11
- Zuletzt bearbeitet 20.09.2025 02:56:50
An issue has been discovered in GitLab CE/EE affecting all versions from 10.7 before 18.1.6, 18.2 before 18.2.6, and 18.3 before 18.3.2 that could have allowed authenticated users to disrupt access to token listings and related administrative operati...
CVE-2025-2246
- EPSS 0.03%
- Veröffentlicht 27.08.2025 19:34:00
- Zuletzt bearbeitet 02.09.2025 17:49:38
An issue has been discovered in GitLab CE/EE affecting all versions before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that could have allowed unauthenticated users to access sensitive manual CI/CD variables by querying the GraphQL API.
CVE-2025-3601
- EPSS 0.06%
- Veröffentlicht 27.08.2025 19:33:50
- Zuletzt bearbeitet 02.09.2025 17:49:04
An issue has been discovered in GitLab CE/EE affecting all versions from 8.15 before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that could have could have allowed an authenticated user to cause a Denial of Service (DoS) condition by submittin...
CVE-2025-4225
- EPSS 0.07%
- Veröffentlicht 27.08.2025 19:33:45
- Zuletzt bearbeitet 02.09.2025 17:48:43
An issue has been discovered in GitLab CE/EE affecting all versions from 14.1 before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that that under certain conditions could have allowed an unauthenticated attacker to cause a denial-of-service con...
- EPSS 0.02%
- Veröffentlicht 27.08.2025 19:33:36
- Zuletzt bearbeitet 02.09.2025 17:47:34
An issue has been discovered in GitLab CE/EE affecting all versions before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that under certain conditions could have allowed an authenticated attacker to distribute malicious code that appears harmles...
CVE-2024-10219
- EPSS 0.03%
- Veröffentlicht 13.08.2025 17:28:00
- Zuletzt bearbeitet 14.08.2025 17:53:47
An issue has been discovered in GitLab CE/EE affecting all versions from 15.6 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that under certain conditions could have allowed authenticated users to bypass access controls and download privat...
CVE-2024-12303
- EPSS 0.02%
- Veröffentlicht 13.08.2025 17:27:45
- Zuletzt bearbeitet 15.08.2025 16:24:44
An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that under certain conditions could have allowed authenticated users with specific roles and permissions to delete...
CVE-2025-1477
- EPSS 0.07%
- Veröffentlicht 13.08.2025 17:27:25
- Zuletzt bearbeitet 15.08.2025 16:24:55
An issue has been discovered in GitLab CE/EE affecting all versions from 8.14 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed an unauthenticated user to create a denial of service condition by sending specially craft...
CVE-2025-2498
- EPSS 0.02%
- Veröffentlicht 13.08.2025 17:27:10
- Zuletzt bearbeitet 15.08.2025 16:25:17
An improper access control in Gitlab EE affecting all versions from 12.0 prior to 18.0.6, 18.1 prior to 18.1.4, and 18.2 prior to 18.2.2 that under certain conditions could have allowed users to view assigned issues from restricted groups by bypassin...
CVE-2025-2614
- EPSS 0.05%
- Veröffentlicht 13.08.2025 17:27:00
- Zuletzt bearbeitet 15.08.2025 16:30:52
An issue has been discovered in GitLab CE/EE affecting all versions from 11.6 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed an authenticated user to cause a denial of service condition by creating specially crafted...