{"id":7540,"date":"2025-10-09T10:03:50","date_gmt":"2025-10-09T10:03:50","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2025\/10\/09\/gitlab-security-update-patch-for-multiple-vulnerabilities-that-enables-dos-attack\/"},"modified":"2025-10-09T10:03:50","modified_gmt":"2025-10-09T10:03:50","slug":"gitlab-security-update-patch-for-multiple-vulnerabilities-that-enables-dos-attack","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2025\/10\/09\/gitlab-security-update-patch-for-multiple-vulnerabilities-that-enables-dos-attack\/","title":{"rendered":"GitLab Security Update \u2013 Patch For Multiple Vulnerabilities That Enables DoS Attack"},"content":{"rendered":"<p>    GitLab Security Update \u2013 Patch For Multiple Vulnerabilities That Enables DoS Attack<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>GitLab has released important security updates. The new versions are 18.4.2, 18.3.4, and 18.2.8 for both Community Edition (CE) and Enterprise Edition (EE).<\/p>\n<p>These updates fix several vulnerabilities that could lead to <a href=\"https:\/\/cybersecuritynews.com\/denial-of-servicedos-attack\/\" target=\"_blank\" rel=\"noreferrer noopener\">denial-of-service (DoS)<\/a> attacks and allow unauthorized access.<\/p>\n<p>All self-managed GitLab installations are strongly advised to upgrade promptly to mitigate potential disruptions. GitLab.com and GitLab Dedicated customers are already fully protected by these patches.<\/p>\n<p>The patched releases address several newly discovered vulnerabilities affecting both authenticated and unauthenticated users. These issues, spanning various attack vectors, underscore the ongoing risk to code repositories and development pipelines if left unpatched.<\/p>\n<p>GitLab\u2019s standard practice ensures issues are only publicly documented 30 days after patch deployment, emphasizing the need for proactive upgrades to preserve security posture.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-multiple-vulnerabilities-patched\">\n<strong>Multiple Vulnerabilities<\/strong> <strong>Patched<\/strong><br \/>\n<\/h2>\n<p>Security researchers and GitLab\u2019s internal team have identified four main issues in this update, each posing unique risks:<\/p>\n<h4 class=\"wp-block-heading\" id=\"h-cve-2025-11340-graphql-mutation-authorization-bypass\"><strong>CVE-2025-11340: GraphQL Mutation Authorization Bypass<\/strong><\/h4>\n<p>This high-severity vulnerability (CVSS 7.7) allowed authenticated users with read-only API tokens to perform unauthorized write operations on vulnerability records due to incorrect scoping in GraphQL mutations.<\/p>\n<p>Exploitation could lead to tampering with vulnerability details, straining governance and compliance efforts. Impacted versions include GitLab EE 18.3 to 18.3.4 and 18.4 to 18.4.2. Discovered internally by GitLab.<\/p>\n<h4 class=\"wp-block-heading\" id=\"h-cve-2025-10004-denial-of-service-via-graphql-blob-requests\"><strong>CVE-2025-10004: Denial of Service via GraphQL Blob Requests<\/strong><\/h4>\n<p>Assigned a CVSS score of 7.5, this remote flaw impacted versions from 13.12 through 18.2.8, 18.3 up to 18.3.4, and 18.4 up to 18.4.2. By sending specially crafted GraphQL requests for large repository blobs, attackers could exhaust server resources, making a GitLab instance unresponsive. No authentication is required, substantially widening its attack surface.<\/p>\n<h4 class=\"wp-block-heading\" id=\"h-cve-2025-9825-unauthorized-access-to-manual-ci-cd-variables-via-graphql\"><strong>CVE-2025-9825: Unauthorized Access to Manual CI\/CD Variables via GraphQL<\/strong><\/h4>\n<p>This medium-severity bug (CVSS 5.0) exposed sensitive manual <a href=\"https:\/\/cybersecuritynews.com\/ci-cd-security\/\" target=\"_blank\" rel=\"noreferrer noopener\">CI\/CD variables<\/a> to authenticated users lacking project membership, simply by querying the GraphQL API. Versions affected range from 13.7 to 18.2.8, and pre-patched releases of 18.3 and 18.4.<\/p>\n<h4 class=\"wp-block-heading\" id=\"h-cve-2025-2934-dos-via-malicious-webhook-endpoints-in-gitlab-ce-ee\"><strong>CVE-2025-2934: DoS via Malicious Webhook Endpoints in GitLab CE\/EE<\/strong><\/h4>\n<p>Affecting all versions from 5.2 up to 18.2.8, 18.3 before 18.3.4, and 18.4 before 18.4.2, this moderate risk (CVSS 4.3) stemmed from a Ruby Core library flaw. Attackers could configure webhooks to send malicious HTTP responses, destabilizing GitLab servers. The issue was responsibly disclosed in July 2025.<\/p>\n<figure class=\"wp-block-table is-style-stripes\">\n<table class=\"has-fixed-layout\">\n<thead>\n<tr>\n<th>CVE ID<\/th>\n<th>Vulnerability Title<\/th>\n<th>Severity<\/th>\n<th>CVSS Score<\/th>\n<th>Impacted Versions<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td>CVE-2025-11340<\/td>\n<td>GraphQL Mutations Auth Bypass (EE)<\/td>\n<td>High<\/td>\n<td>7.7<\/td>\n<td>18.3 \u2013 18.3.4, 18.4\u201318.4.2<\/td>\n<\/tr>\n<tr>\n<td>CVE-2025-10004<\/td>\n<td>DoS via GraphQL Blob Type (CE\/EE)<\/td>\n<td>High<\/td>\n<td>7.5<\/td>\n<td>13.12\u201318.2.8, 18.3\u201318.3.4, 18.4\u201318.4.2<\/td>\n<\/tr>\n<tr>\n<td>CVE-2025-9825<\/td>\n<td>Manual Jobs Auth Flaw (CE\/EE)<\/td>\n<td>Medium<\/td>\n<td>5.0<\/td>\n<td>13.7\u201318.2.8, 18.3\u201318.3.4, 18.4\u201318.4.2<\/td>\n<\/tr>\n<tr>\n<td>CVE-2025-2934<\/td>\n<td>DoS via Webhooks (CE\/EE)<\/td>\n<td>Medium<\/td>\n<td>4.3<\/td>\n<td>5.2\u201318.2.8, 18.3\u201318.3.4, 18.4\u201318.4.2<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/figure>\n<h2 class=\"wp-block-heading\" id=\"h-mitigations\"><strong>Mitigations<\/strong><\/h2>\n<p>GitLab <a href=\"https:\/\/about.gitlab.com\/releases\/2025\/10\/08\/patch-release-gitlab-18-4-2-released\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">strongly urges<\/a> all organizations administering self-managed or on-premise deployments to upgrade immediately to the newly released versions to avoid system downtime and unauthorized data manipulation.<\/p>\n<p>Delaying updates increases risks of disruption, data leakage, and exploit-driven escalation attacks. GitLab provides best practices and upgrade instructions on their official releases and security blogs.<\/p>\n<p>Maintaining prompt patch hygiene is essential for development teams and enterprises relying on GitLab for source code, <a href=\"https:\/\/cybersecuritynews.com\/ci-cd-security\/\" target=\"_blank\" rel=\"noreferrer noopener\">CI\/CD<\/a>, and collaborative software workflow management.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(135deg,rgb(238,238,238) 100%,rgb(169,184,195) 100%)\"><strong><code>Cyber Awareness Month Offer: Upskill With 100+ Premium Cybersecurity Courses From EHA's Diamond Membership: <a href=\"https:\/\/ethicalhacksacademy.com\/pages\/diamond-membership\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Join Today<\/a><\/code><\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/gitlab-security-update-vulnerabilities\/\">GitLab Security Update \u2013 Patch For Multiple Vulnerabilities That Enables DoS Attack<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Guru Baran<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/gitlab-security-update-vulnerabilities\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>GitLab Security Update \u2013 Patch For Multiple Vulnerabilities That Enables DoS Attack GitLab has released important security updates. The new versions are 18.4.2, 18.3.4, and 18.2.8 for both Community Edition (CE) and Enterprise Edition (EE). These updates fix several vulnerabilities that could lead to denial-of-service (DoS) attacks and allow unauthorized access. All self-managed GitLab installations [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63,131,648],"tags":[130],"class_list":["post-7540","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","category-vulnerability","category-vulnerability-news","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/7540"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=7540"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/7540\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=7540"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=7540"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=7540"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}