CVE-2025-0290
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Jan 28, 2025
CWE ID 835
Summary
CVE-2025-0290 is a vulnerability impacting GitLab CE/EE versions 15.0 to 17.7.1, 17.6.0 to 17.6.3, and 17.5.5 and earlier. This issue arises from a flaw in processing CI artifacts metadata, which can lead to background jobs becoming unresponsive under specific conditions. Organizations using these affected versions are advised to apply the relevant patches to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- GitLab
Affected Vendors
- GitLab Inc.