logo

GitLab Patches Multiple Vulnerabilities Enabling DoS and Cross-Site Scripting Attacks

ID: d7fd6161-0332-53ed-b01c-55ef4922dcf6

STIX ID: report--d7fd6161-0332-53ed-b01c-55ef4922dcf6

Feed Name: GBHackers

Threat Score
70/100

Date Published: 2026-02-11

Date Updated: 2026-04-22

Author: Divya

...
...

GitLab released critical security updates for Community and Enterprise editions (18.8.4, 18.7.4, 18.6.6) addressing multiple vulnerabilities — most notably CVE-2025-7659 (CVSS 8.0) which can enable unauthenticated token theft and access to private repositories — plus several DoS, XSS, SSRF, and other flaws; administrators of self-managed instances are urged to upgrade immediately (GitLab.com has already been patched).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.