VDB
CVE-2025-1042
CVE-2025-1042
PUBLISHED
An insecure direct object reference vulnerability in GitLab EE affecting all versions from 15.7 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to view repositories in an unauthorized way.
EPSS 0.03% · 8.4th percentile
Risk Scores
EPSS Score
0.03%
8.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 15.7.0 |
| Bitnami | gitlab | 15.7.0 |
Timeline
- Jan 21, 1970 Security Advisory
- Feb 11, 2025 CVE Published
- Feb 12, 2025 Coalition ESS Score
- Feb 12, 2025 PoC Published
- Feb 12, 2025 PoC Published
- Feb 13, 2025 EPSS Score
- Feb 27, 2025 EPSS Score
- Mar 5, 2025 CVE Updated
- Mar 14, 2025 EPSS Score
- Mar 28, 2025 EPSS Score
- Apr 12, 2025 EPSS Score
- Apr 26, 2025 EPSS Score