GitLab Multiple Vulnerabilities
Release Date: 11 Feb 2026
RISK: Medium Risk
TYPE: Servers - Other Servers
Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, cross-site scripting, data manipulation, information disclosure and security restriction bypass on the targeted system.
Impact
- Denial of Service
- Security Restriction Bypass
- Cross-Site Scripting
- Data Manipulation
- Information Disclosure
System / Technologies affected
- GitLab Community Edition (CE) versions prior to 18.8.4, 18.7.4, 18.6.6
- GitLab Enterprise Edition (EE) versions prior to 18.8.4, 18.7.4, 18.6.6
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
Vulnerability Identifier
- CVE-2025-7659
- CVE-2025-8099
- CVE-2025-12073
- CVE-2025-12575
- CVE-2025-14560
- CVE-2025-14592
- CVE-2025-14594
- CVE-2026-0595
- CVE-2026-0958
- CVE-2026-1080
- CVE-2026-1094
- CVE-2026-1282
- CVE-2026-1387
- CVE-2026-1456
- CVE-2026-1458
沒有留言:
發佈留言