7.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.12 to 18.2.8, 18.3 to 18.3.4, and 18.4 to 18.4.2 that could make the GitLab instance unresponsive or severely degraded by sending crafted GraphQL queries requesting large repository blobs.
Basic Information
ID
CVE-2025-10004
Source
GitLab
Published
Oct 9, 2025 at 12:04
Affected Product
Vendor
GitLab
Product
GitLab
Version
13.12
Affected Versions
GitLab GitLab 13.12
GitLab GitLab 18.3
GitLab GitLab 18.4
GitLab GitLab 18.3
GitLab GitLab 18.4