CVE-2025-7659 is a critical vulnerability in GitLab CE/EE versions before 18.6.6, 18.7.4, and 18.8.4, allowing unauthenticated users to steal tokens and access private repositories. This is due to incomplete validation within the Web IDE. With a CVSS score of 9.1 (CRITICAL), this vulnerability has a low attack complexity and requires no user interaction or privileges, enabling high confidentiality and integrity impacts. Currently, there is no evidence of active exploitation, nor are public exploit codes available in Metasploit, Nuclei, or ExploitDB. Despite this, the vulnerability has garnered significant community discussion and media coverage, indicating awareness and concern.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 18.2, < 18.6.6CPE match | cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* | ||
>= 18.7, < 18.7.4CPE match | cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* | ||
>= 18.8, < 18.8.4CPE match | cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* | ||
>= 18.2.0, < 18.6.6CPE matchmatch criteria | cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:* | ||
>= 18.2.0, < 18.6.6CPE matchmatch criteria | cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.