CVE-2025-11340
GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 to 18.3.4, 18.4 to 18.4.2 that, under certain conditions, could have allowed authenticated users with read-only API tokens to perform unauthorized write operations on vulnerability records by exploiting incorrectly scoped GraphQL mutations.
Vendor
Product
CWE
Yayın Tarihi
2025-10-09 12:15:35
Güncelleme
2025-10-20 21:00:37
Source Identifier
cve@gitlab.com
KEV Date Added
-