Security Advisory

CVE-2025-12562

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-12-11 03:33:47
Last updated 2025-12-11 15:17:34
Assigner GitLab
CVSS score 7.5
State PUBLISHED

Description

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 11.10 before 18.4.6, 18.5 before 18.5.4, and 18.6 before 18.6.2 that could have allowed an unauthenticated user to create a denial of service condition by sending crafted GraphQL queries that bypass query complexity limits.