/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2025-0194

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2025-0194

Severity

6.5

Medium

CVSS V3

Summary

Insertion of Sensitive Information into Externally-Accessible File or Directory in GitLab

Description

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing