Security Advisory

CVE-2025-2254

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-06-12 10:02:40
Last updated 2025-06-12 13:42:30
Assigner GitLab
State PUBLISHED

Description

An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. Improper output encoding in the snipper viewer functionality lead to Cross-Site scripting attacks.