AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-7739

HIGH · CVSS 8.7 EPSS 0.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-08-13 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.7. It affects GitLab. Exploitation may require the attacker to be authenticated.

CVE
CVE-2025-7739
Severity
HIGH
CVSS
8.7
EPSS
0.30%
GitLab

Original NVD Description

An issue has been discovered in GitLab CE/EE affecting all versions from 18.2 before 18.2.2 that, under certain conditions, could have allowed authenticated users to achieve stored cross-site scripting by injecting malicious HTML content in scoped label descriptions.

Related CVEs

Other vulnerabilities affecting the same vendor(s)