Early access: the directory is still filling out, and every rating here is a reported experience.

Security releases

GitLab

GitLab Patch Release: 18.2.2, 18.1.4, 18.0.6

patch-release-gitlab-18-2-2-released Aug 13, 2025 Source: Vendor

Imported by the GitLab patch release catcher from https://docs.gitlab.com/releases/patches/patch-release-gitlab-18-2-2-released/. 12 CVE sections listed. Draft. Review before publishing.

Source of record The credited names below are quoted verbatim from the vendor's own advisory: https://docs.gitlab.com/releases/patches/patch-release-gitlab-18-2-2-released/
Are you credited here? Sign in and claim your line: it is yours immediately, no review queue. The name the vendor printed stays next to your handle for anyone to check against the advisory above, and any member who thinks a claim is wrong can refute it.

Credited

11 lines
Showing 1–11 of 11
CVE-2025-7734 BR2025-0000-009741 unclaimed
Cross-site scripting issue in blob viewer impacts GitLab CE/EE
Credited as joaxcar
CVE-2025-7739 BR2025-0000-009742 unclaimed
Cross-site scripting issue in labels impacts GitLab CE/EE
Credited as yvvdwf
CVE-2025-6186 BR2025-0000-009743 unclaimed
Cross-site scripting issue in Workitem impacts GitLab CE/EE
Credited as joaxcar
CVE-2025-8094 BR2025-0000-009744 unclaimed
Improper Handling of Permissions issue in project API impacts GitLab CE/EE
Credited as abdelrahman_maged
CVE-2024-12303 BR2025-0000-009745 unclaimed
Incorrect Privilege Assignment issue in delete issues operation impacts GitLab CE/EE
Credited as yuki_osaki
CVE-2025-2614 BR2025-0000-009746 unclaimed
Allocation of Resources Without Limits issue in release name creation impacts GitLab CE/EE
Credited as pwnie
CVE-2024-10219 BR2025-0000-009747 unclaimed
Incorrect Authorization issue in jobs API impacts GitLab CE/EE
Credited as albatraoz
CVE-2025-2937 BR2025-0000-009748 unclaimed
Inefficient Regular Expression Complexity issue in wiki impacts GitLab CE/EE
Credited as yuki_osaki
CVE-2025-1477 BR2025-0000-009749 unclaimed
Allocation of Resources Without Limits issue in Mattermost integration impacts GitLab CE/EE
Credited as pwnie
CVE-2025-5819 BR2025-0000-009750 unclaimed
Incorrect Permission Assignment issue in ID token impacts GitLab CE/EE
Credited as skybound
CVE-2025-2498 BR2025-0000-009751 unclaimed
Insufficient Access Control issue in IP Restriction impacts GitLab EE
Credited as rogerace