CVE-2025-0290

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jan 28, 2025
CWE ID 835

Summary

CVE-2025-0290 is a vulnerability impacting GitLab CE/EE versions 15.0 to 17.7.1, 17.6.0 to 17.6.3, and 17.5.5 and earlier. This issue arises from a flaw in processing CI artifacts metadata, which can lead to background jobs becoming unresponsive under specific conditions. Organizations using these affected versions are advised to apply the relevant patches to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share