CVE-2025-7449
MEDIUM 6.5EPSS 0.4%
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an authenticated user with specific permissions to cause a denial of service condition through HTTP response processing.
- CVSS v3.1
- 6.5 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H - EPSS
- 0.41% chance of exploitation in the next 30 days, 34th percentile
- Published
- 2025-11-26
- Updated
- 2025-12-10