CVE-2025-2498 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An improper access control in Gitlab EE affecting all versions from 12.0 prior to 18.0.6, 18.1 prior to 18.1.4, and 18.2 prior to 18.2.2 that under certain cond…
Low CVSS: 3.1

CVE-2025-2498

An improper access control in Gitlab EE affecting all versions from 12.0 prior to 18.0.6, 18.1 prior to 18.1.4, and 18.2 prior to 18.2.2 that under certain conditions could have allowed users to view assigned issues from restricted groups by bypassing IP restrictions.
Vendor
Gitlab
Product
Gitlab
CWE
CWE-1220
Yayın Tarihi
2025-08-13 18:15:30
Güncelleme
2025-08-15 16:25:17
Source Identifier
cve@gitlab.com
KEV Date Added
-

Kategoriler

Referanslar