Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-3950

Опубликовано: 09 янв. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 3.5

Описание

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.3 before 18.5.5, 18.6 before 18.6.3, and 18.7 before 18.7.1 that could have allowed a user to leak certain information by referencing specially crafted images that bypass asset proxy protection.

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

ignored

jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 3%
0.00015
Низкий

3.5 Low

CVSS3

Связанные уязвимости

CVSS3: 3.5
nvd
3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.3 before 18.5.5, 18.6 before 18.6.3, and 18.7 before 18.7.1 that could have allowed a user to leak certain information by referencing specially crafted images that bypass asset proxy protection.

CVSS3: 3.5
debian
3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 3.5
github
3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.3 before 18.5.5, 18.6 before 18.6.3, and 18.7 before 18.7.1 that could have allowed a user to leak certain information by referencing specially crafted images that bypass asset proxy protection.

CVSS3: 3.5
fstec
3 месяца назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab EE/ CE, связанная с недостатками разграничения доступа к личной информации, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 3%
0.00015
Низкий

3.5 Low

CVSS3