Metrics
Affected Vendors & Products
No advisories yet.
Solution
Upgrade to version 18.2.8, 18.3.4 or 18.4.2
Workaround
No workaround given by the vendor.
Mon, 20 Oct 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:* cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:* |
Thu, 09 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 09 Oct 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.12 to 18.2.8, 18.3 to 18.3.4, and 18.4 to 18.4.2 that could make the GitLab instance unresponsive or severely degraded by sending crafted GraphQL queries requesting large repository blobs. | |
| Title | Allocation of Resources Without Limits or Throttling in GitLab | |
| First Time appeared |
Gitlab
Gitlab gitlab |
|
| Weaknesses | CWE-770 | |
| CPEs | cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Gitlab
Gitlab gitlab |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2025-10-09T13:16:38.980Z
Reserved: 2025-09-04T18:33:25.673Z
Link: CVE-2025-10004
Updated: 2025-10-09T13:16:30.362Z
Status : Analyzed
Published: 2025-10-09T12:15:34.570
Modified: 2025-10-20T20:57:04.673
Link: CVE-2025-10004
No data.
OpenCVE Enrichment
No data.