โ† All reports

GitLab has addressed multiple vulnerabilities in its CE/EE versions that could allow authenticated users to cause denial of service under specific conditions.

CybersecurityTechnologyConflictInformation SecurityApr 22, 2026score 0.175 posts ยท 0 replies across 1 instances
This thread discusses multiple vulnerabilities in GitLab CE/EE across various versions, all of which could allow authenticated users to cause denial of service under certain conditions. The vulnerabilities were remediated by GitLab, and the details are provided with CVSS scores and affected versions.

Claims

GitLab has addressed multiple vulnerabilities in its CE/EE versions that could allow authenticated users to cause denial of service under specific conditions.
Parent: CybersecurityEntity: GitLabSub-entity: GitLab CE/EEImpact: positiveDate: Apr 22, 2026Target: GitLab's ability to remediate vulnerabilities in its software

Source posts

@[email protected]
๐Ÿšจ EUVD-2026-24959 ๐Ÿ“Š Score: 6.5/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.3 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that under certain conditions could have allowed an authenticated user to cause denial of service when... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-24959 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2025-209556 ๐Ÿ“Š Score: 2.7/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 11.2 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that under certain conditions could have allowed an authenticated user with project owner permission... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-209556 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2025-209555 ๐Ÿ“Š Score: 6.5/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.2 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that could have allowed an authenticated user to cause denial of service due to insufficient resource... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-209555 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2025-209551 ๐Ÿ“Š Score: 6.5/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.4 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that could have allowed an authenticated user to cause denial of service by overwhelming system reso... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-209551 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2025-209549 ๐Ÿ“Š Score: 6.5/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.6 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that could have allowed an authenticated user to cause denial of service under certain conditions by... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-209549 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-24961 ๐Ÿ“Š Score: 3.5/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.1 that under certain conditions could have allowed an authenticated user to load unauthorized content into another user's browser due to improper input validation in ... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-24961 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25040 ๐Ÿ“Š Score: 8.1/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.0 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that could have allowed an unauthenticated user to execute GraphQL mutations on behalf of authenticate... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25040 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25048 ๐Ÿ“Š Score: 5.4/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that could have allowed a user to use invalidated or incorrectly scoped credentials to access Virtual ... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25048 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25046 ๐Ÿ“Š Score: 8.0/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.10.4 and 18.11 before 18.11.1 that could have allowed an unauthenticated user to execute arbitrary JavaScript in a user's browser session due to improper path va... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25046 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25044 ๐Ÿ“Š Score: 4.3/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.1 that could have allowed an authenticated user to access titles of confidential or private issues in public projects due to improper access control in the issue desc... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25044 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25042 ๐Ÿ“Š Score: 8.0/10 (CVSS v3.1) ๐Ÿ“ฆ Product: GitLab, GitLab, GitLab ๐Ÿข Vendor: GitLab ๐Ÿ“… Updated: 2026-04-22 ๐Ÿ“ GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.1.0 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that under certain conditions could have allowed an unauthenticated user to access tokens in the Sto... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25042 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 22, 2026
#cybersecurity#infosec#euvd#cve#vulnerability