GitLab Multiple Vulnerabilities
Release Date:
14 Feb 2025
2744
Views
RISK: Medium Risk
TYPE: Servers - Other Servers

Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit these vulnerabilities to trigger denial of service condition, cross-site scripting, sensitive information disclosure, elevation of privilege and security restriction bypass on the targeted system.
Impact
- Denial of Service
- Cross-Site Scripting
- Security Restriction Bypass
- Elevation of Privilege
- Information Disclosure
System / Technologies affected
- GitLab Community Edition (CE) versions prior to 17.8.2, 17.7.4 and 17.6.5
- GitLab Enterprise Edition (EE) versions prior to 17.8.2, 17.7.4 and 17.6.5
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
Vulnerability Identifier
- CVE-2024-3303
- CVE-2024-9870
- CVE-2024-12379
- CVE-2025-0376
- CVE-2025-0516
- CVE-2025-1042
- CVE-2025-1198
- CVE-2025-1212
Source
Related Link
Related Tags
Share with