VDB
CVE-2025-7691
CVE-2025-7691
PUBLISHED
A privilege escalation issue has been discovered in GitLab EE affecting all versions from 16.6 prior to 18.2.7, 18.3 prior to 18.3.3, and 18.4 prior to 18.4.1 that could have allowed a developer with specific group management permissions to escalate their privileges and obtain unauthorized access to additional system capabilities.
EPSS 0.01% · 1.0th percentile
Risk Scores
EPSS Score
0.01%
1.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 16.6.0, 18.4.0, 18.3.0 |
| Bitnami | gitlab | 16.6.0, 18.3.0, 18.4.0 |
Exploit Intelligence
- https://hackerone.com/reports/3200469 (bitnami)
Timeline
- Sep 26, 2025 CVE Published
- Sep 26, 2025 EPSS Score
- Oct 3, 2025 EPSS Score
- Oct 10, 2025 EPSS Score
- Oct 16, 2025 EPSS Score
- Oct 23, 2025 EPSS Score
- Oct 30, 2025 EPSS Score
- Nov 6, 2025 EPSS Score
- Nov 12, 2025 EPSS Score
- Nov 19, 2025 EPSS Score
- Nov 20, 2025 CVE Updated
- Nov 26, 2025 EPSS Score