CVE-2025-9825

Vulnerability

CVE-2025-9825

CVE-2025-9825

ecosystem: ubuntu:16.04

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.7 to 18.2.8, 18.3 before 18.3.4, and 18.4 before 18.4.2 that could have allowed authenticated users without project membership to view sensitive manual CI/CD variables by querying the GraphQL API.

References
  • launchpad.net/ubuntu-cve-tracker: https://www.cve.org/CVERecord?id=CVE-2025-9825
severitym
medium

type: vendor

source: launchpad.net/ubuntu-cve-tracker

published: 2025-11-21 06:15:00

Detection

ubuntu:16.04
CVE-2025-9825

ubuntu-cve-tracker

OR

unfixedignored

 

gitlab

package type: source

type: version

tag: esm-apps/xenial_medium

Data Sources

  • Ubuntu CVE Tracker

    ubuntu-cve-tracker

VulsFutureVuls|GitHub Logo IconGitHub