GitLab CE/EE Denial-of-Service Vulnerability in CI Pipeline Exports

Vulnerability

A denial-of-service vulnerability has been identified in GitLab Community Edition (CE) and Enterprise Edition (EE) versions prior to 17.8.7, 17.9.6 and 17.10.4. The issue arises when oversized payloads are injected into CI pipeline exports, potentially leading to service disruption.

Impact

Exploitation of this vulnerability can cause a denial-of-service condition, disrupting normal service operation.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.3
impact
2.5
exploitability
5.2
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.