CVE-2025-9825
Vulnerability
CVE-2025-9825
CVE-2025-9825
ecosystem: ubuntu:16.04GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.7 to 18.2.8, 18.3 before 18.3.4, and 18.4 before 18.4.2 that could have allowed authenticated users without project membership to view sensitive manual CI/CD variables by querying the GraphQL API.
References
- launchpad.net/ubuntu-cve-tracker: https://www.cve.org/CVERecord?id=CVE-2025-9825
severitym
medium
type: vendor
source: launchpad.net/ubuntu-cve-tracker
published: 2025-11-21 06:15:00
Detection
ubuntu:16.04
CVE-2025-9825
ubuntu-cve-tracker
OR
unfixedignored
 
gitlab
package type: source
type: version
tag: esm-apps/xenial_medium
Data Sources
- Ubuntu CVE Tracker
ubuntu-cve-tracker