GitLab Patches Multiple Vulnerabilities Enabling DoS and Cross-Site Scripting Attacks
ID: d7fd6161-0332-53ed-b01c-55ef4922dcf6
STIX ID: report--d7fd6161-0332-53ed-b01c-55ef4922dcf6
Feed Name: GBHackers
Threat Score
GitLab released critical security updates for Community and Enterprise editions (18.8.4, 18.7.4, 18.6.6) addressing multiple vulnerabilities — most notably CVE-2025-7659 (CVSS 8.0) which can enable unauthenticated token theft and access to private repositories — plus several DoS, XSS, SSRF, and other flaws; administrators of self-managed instances are urged to upgrade immediately (GitLab.com has already been patched).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
