CVE-2025-1198
An issue discovered in GitLab CE/EE affecting all versions from 16.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 meant that long-lived connections in ActionCable potentially allowed revoked Personal Access Tokens access to streaming results.
Vendor
Product
CWE
Yayın Tarihi
2025-02-13 02:15:29
Güncelleme
2025-08-06 18:50:00
Source Identifier
cve@gitlab.com
KEV Date Added
-