CVE-2025-1540
06.03.2025, 09:15
An issue has been discovered in GitLab CE/EE for Self-Managed and Dedicated instances affecting all versions from 17.5 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2. It was possible for a user added as an External to read and clone internal projects under certain circumstances."Enginsight
Vendor | Product | Version |
---|---|---|
gitlab | gitlab | 17.5.0 ≤ 𝑥 < 17.6.5 |
gitlab | gitlab | 17.5.0 ≤ 𝑥 < 17.6.5 |
gitlab | gitlab | 17.7.0 ≤ 𝑥 < 17.7.4 |
gitlab | gitlab | 17.7.0 ≤ 𝑥 < 17.7.4 |
gitlab | gitlab | 17.8.0 ≤ 𝑥 < 17.8.2 |
gitlab | gitlab | 17.8.0 ≤ 𝑥 < 17.8.2 |
𝑥
= Vulnerable software versions