Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-14103

Опубликовано: 25 фев. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.3

Описание

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.7 before 18.7.5, 18.8 before 18.8.5, and 18.9 before 18.9.1 that could have allowed an unauthorized user with Developer-role permissions to set pipeline variables for manually triggered jobs under certain conditions.

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

ignored

jammy

DNE

noble

DNE

questing

DNE

upstream

not-affected

debian: Vulnerable code introduced later

Показывать по

EPSS

Процентиль: 2%
0.00012
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
nvd
28 дней назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.7 before 18.7.5, 18.8 before 18.8.5, and 18.9 before 18.9.1 that could have allowed an unauthorized user with Developer-role permissions to set pipeline variables for manually triggered jobs under certain conditions.

CVSS3: 4.3
debian
28 дней назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 4.3
github
28 дней назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.7 before 18.7.5, 18.8 before 18.8.5, and 18.9 before 18.9.1 that could have allowed an unauthorized user with Developer-role permissions to set pipeline variables for manually triggered jobs under certain conditions.

CVSS3: 4.3
fstec
29 дней назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостатками процедуры авторизации, позволяющая нарушителю обойти ограничения безопасности

EPSS

Процентиль: 2%
0.00012
Низкий

4.3 Medium

CVSS3