PT-2025-17732 · Gitlab · Gitlab

Joaxcar

·

Published

2025-04-24

·

Updated

2025-06-04

·

CVE-2025-1763

CVSS v3.1

8.7

High

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions GitLab versions prior to 17.11.1
Description The issue concerns multiple vulnerabilities in GitLab, including Cross-Site Scripting (XSS), Denial of Service (DoS), and Header Injection. These vulnerabilities were addressed in a recent advisory by GitLab.
Recommendations For versions prior to 17.11.1, update to version 17.11.1 or later to resolve the issue.

Exploit

Fix

DoS

XSS

Weakness Enumeration

Related Identifiers

BDU:2025-06611
BIT-GITLAB-2025-1763
CVE-2025-1763

Affected Products

Gitlab