Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-3601

Опубликовано: 27 авг. 2025
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

An issue has been discovered in GitLab CE/EE affecting all versions from 8.15 before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that could have could have allowed an authenticated user to cause a Denial of Service (DoS) condition by submitting URLs that generate excessively large responses.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Версия от 8.15.0 (включая) до 18.1.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия от 8.15.0 (включая) до 18.1.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Версия от 18.2.0 (включая) до 18.2.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия от 18.2.0 (включая) до 18.2.5 (исключая)
cpe:2.3:a:gitlab:gitlab:18.3.0:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:18.3.0:*:*:*:enterprise:*:*:*

EPSS

Процентиль: 9%
0.00036
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 6.5
debian
21 день назад

An issue has been discovered in GitLab CE/EE affecting all versions fr ...

CVSS3: 6.5
github
21 день назад

An issue has been discovered in GitLab CE/EE affecting all versions from 8.15 before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that could have could have allowed an authenticated user to cause a Denial of Service (DoS) condition by submitting URLs that generate excessively large responses.

EPSS

Процентиль: 9%
0.00036
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770