Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-688v-85ch-v3v6

Опубликовано: 27 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Denial of Service issue in GraphQL endpoints in Gitlab EE/CE affecting all versions from 11.10 prior to 18.2.7, 18.3 prior to 18.3.3, and 18.4 prior to 18.4.1 allows unauthenticated users to potentially bypass query complexity limits leading to resource exhaustion and service disruption.

Denial of Service issue in GraphQL endpoints in Gitlab EE/CE affecting all versions from 11.10 prior to 18.2.7, 18.3 prior to 18.3.3, and 18.4 prior to 18.4.1 allows unauthenticated users to potentially bypass query complexity limits leading to resource exhaustion and service disruption.

EPSS

Процентиль: 46%
0.00236
Низкий

7.5 High

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 7.5
nvd
4 месяца назад

Denial of Service issue in GraphQL endpoints in Gitlab EE/CE affecting all versions from 11.10 prior to 18.2.7, 18.3 prior to 18.3.3, and 18.4 prior to 18.4.1 allows unauthenticated users to potentially bypass query complexity limits leading to resource exhaustion and service disruption.

CVSS3: 7.5
debian
4 месяца назад

Denial of Service issue in GraphQL endpoints in Gitlab EE/CE affecting ...

CVSS3: 7.5
fstec
4 месяца назад

Уязвимость компонента GraphQL Endpoint программной платформы на базе git для совместной работы над кодом GitLab EE/ CE, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 46%
0.00236
Низкий

7.5 High

CVSS3

Дефекты

CWE-770