CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.7. It affects GitLab.
CVE
CVE-2025-2254
Severity
HIGH
CVSS
8.7
EPSS
0.30%
GitLab
Original NVD Description
An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. Improper output encoding in the snipper viewer functionality lead to Cross-Site scripting attacks.
Related CVEs
Other vulnerabilities affecting the same vendor(s)