10
Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition and security restriction bypass on the targeted system.
Impact
- Denial of Service
- Security Restriction Bypass
System / Technologies affected
- GitLab Community Edition (CE) versions prior to 18.4.2, 18.3.4, 18.2.8
- GitLab Enterprise Edition (EE) versions prior to 18.4.2, 18.3.4, 18.2.8
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://about.gitlab.com/releases/2025/10/08/patch-release-gitlab-18-4-2-released/