GitLab Multiple Vulnerabilities
Release Date: 29 Sep 2025
RISK: Medium Risk
TYPE: Servers - Other Servers
Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, sensitive information disclosure and cross-site scripting on the targeted system.
Impact
- Denial of Service
- Information Disclosure
- Elevation of Privilege
- Cross-Site Scripting
System / Technologies affected
- GitLab Community Edition (CE) versions prior to 18.4.1, 18.3.3 and 18.2.7
- GitLab Enterprise Edition (EE) versions prior to 18.4.1, 18.3.3 and 18.2.7
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
Vulnerability Identifier
- CVE-2025-5069
- CVE-2025-7691
- CVE-2025-8014
- CVE-2025-9642
- CVE-2025-9958
- CVE-2025-10858
- CVE-2025-10867
- CVE-2025-10868
- CVE-2025-10871
- CVE-2025-11042
沒有留言:
發佈留言