CVE-2025-1212
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Feb 12, 2025
CWE ID 497
Summary
CVE-2025-1212 is an information disclosure vulnerability affecting GitLab CE/EE. Versions prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 are all vulnerable. An attacker can exploit this issue by sending a crafted request to a backend server, resulting in the disclosure of sensitive information. This vulnerability poses a significant risk to GitLab users and requires immediate attention to apply the necessary patches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- GitLab
Affected Vendors
- GitLab Inc.