Known vulnerabilities in GitLab Enterprise Edition 19.2.4

Version: 19.2.4
Software CPE: cpe:2.3:a:gitlab:gitlab-ee:*:*:*:*:*:*:*:*
Total vulnerabilities: 6
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting GitLab Enterprise Edition version 19.2.4 GitLab Enterprise Edition 19.2.4 is affected by 6 vulnerabilities: 5 medium, 1 low Critical High Medium Low

Vulnerabilities (6)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU145887 - Improper Authorization
CVE-2026-7487
CWE-285 Medium
No
No
19.1.7, 19.2.5, 19.3.1 27.08.2026 SB2026082725
#VU145886 - Acceptance of Extraneous Untrusted Data With Trusted Data
CVE-2026-15387
CWE-349 Medium
No
No
19.1.7, 19.2.5, 19.3.1 27.08.2026 SB2026082725
#VU145885 - Authentication Bypass Using an Alternate Path or Channel
CVE-2026-3035
CWE-288 Low
No
No
19.1.7, 19.2.5, 19.3.1 27.08.2026 SB2026082725
#VU145883 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2025-10903
CWE-835 Medium
No
No
19.1.7, 19.2.5, 19.3.1 27.08.2026 SB2026082725
#VU145875 - Allocation of Resources Without Limits or Throttling
CVE-2026-77801
CWE-770 Medium
No
No
19.1.7, 19.2.5, 19.3.1 27.08.2026 SB2026082725
#VU145874 - Inclusion of Functionality from Untrusted Control Sphere
CVE-2026-18252
CWE-829 Medium
No
No
19.1.7, 19.2.5, 19.3.1 27.08.2026 SB2026082725