Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

GitLab — Vulnerabilities & Security Advisories 956

All 956 CVE vulnerabilities found in GitLab, with AI-generated Chinese analysis, references, and POCs.

Vendor: GitLab

CVE IDTitleCVSSSeverityPublished
CVE-2025-12073 Server-Side Request Forgery (SSRF) in GitLab CWE-918 4.3 Medium2026-02-11
CVE-2025-12575 Server-Side Request Forgery (SSRF) in GitLab CWE-918 5.4 Medium2026-02-11
CVE-2025-14560 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab CWE-79 7.3 High2026-02-11
CVE-2025-14594 Authorization Bypass Through User-Controlled Key in GitLab CWE-639 3.5 Low2026-02-11
CVE-2025-14592 Missing Authorization in GitLab CWE-862 3.7 Low2026-02-11
CVE-2026-0595 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab CWE-79 7.3 High2026-02-11
CVE-2026-0958 Interpretation Conflict in GitLab CWE-436 7.5 High2026-02-11
CVE-2026-1080 Authorization Bypass Through User-Controlled Key in GitLab CWE-639 4.3 Medium2026-02-11
CVE-2026-1094 Improper Validation of Unsafe Equivalence in Input in GitLab CWE-1289 4.6 Medium2026-02-11
CVE-2026-1282 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in GitLab CWE-80 3.5 Low2026-02-11
CVE-2026-1387 Allocation of Resources Without Limits or Throttling in GitLab CWE-770 6.5 Medium2026-02-11
CVE-2026-1456 Allocation of Resources Without Limits or Throttling in GitLab CWE-770 6.5 Medium2026-02-11
CVE-2026-1458 Allocation of Resources Without Limits or Throttling in GitLab CWE-770 6.5 Medium2026-02-11
CVE-2026-1751 Missing Authorization in GitLab CWE-862 3.1 Low2026-02-02
CVE-2025-13928 Incorrect Authorization in GitLab CWE-863 7.5 High2026-01-22
CVE-2025-13927 Allocation of Resources Without Limits or Throttling in GitLab CWE-770 7.5 High2026-01-22
CVE-2026-0723 Unchecked Return Value in GitLab CWE-252 7.4 High2026-01-22
CVE-2026-1102 Allocation of Resources Without Limits or Throttling in GitLab CWE-770 5.3 Medium2026-01-22
CVE-2025-13335 Loop with Unreachable Exit Condition ('Infinite Loop') in GitLab CWE-835 6.5 Medium2026-01-22
CVE-2025-11224 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab CWE-79 7.7 High2026-01-14
CVE-2025-3950 Exposure of Private Personal Information to an Unauthorized Actor in GitLab CWE-359 3.5 Low2026-01-09
CVE-2025-9222 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab CWE-79 8.7 High2026-01-09
CVE-2025-10569 Allocation of Resources Without Limits or Throttling in GitLab CWE-770 6.5 Medium2026-01-09
CVE-2025-11246 Insufficient Granularity of Access Control in GitLab CWE-1220 5.4 Medium2026-01-09
CVE-2025-13772 Missing Authorization in GitLab CWE-862 7.1 High2026-01-09
CVE-2025-13761 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab CWE-79 8.0 High2026-01-09
CVE-2025-13781 Missing Authorization in GitLab CWE-862 6.5 Medium2026-01-09
CVE-2025-12029 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab CWE-79 8.0 High2025-12-11
CVE-2025-12734 Improper Encoding or Escaping of Output in GitLab CWE-116 3.5 Low2025-12-11
CVE-2025-4097 Allocation of Resources Without Limits or Throttling in GitLab CWE-770 6.5 Medium2025-12-11

All 956 known CVE vulnerabilities affecting GitLab with full Chinese analysis, references, and POCs where available.