An issue has been discovered in GitLab CE/EE affecting all versions from 13.12 before 17.8.7, 17.9 before 17.9.6, and 17.10 before 17.10.4. Under certain conditions users could bypass IP access restrictions and view sensitive information.
2025-04-10T13:15:51.760
2025-08-07T18:37:28.620
Analyzed
CVSSv3.1: 5.3 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | gitlab | gitlab | < 17.8.7 | Yes |
Application | gitlab | gitlab | < 17.8.7 | Yes |
Application | gitlab | gitlab | < 17.9.6 | Yes |
Application | gitlab | gitlab | < 17.9.6 | Yes |
Application | gitlab | gitlab | < 17.10.4 | Yes |
Application | gitlab | gitlab | < 17.10.4 | Yes |