Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade to version 18.9.1 or above.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 28 Feb 2026 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:gitlab:gitlab:18.9.0:*:*:*:community:*:*:* cpe:2.3:a:gitlab:gitlab:18.9.0:*:*:*:enterprise:*:*:* |
Thu, 26 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 25 Feb 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | GitLab has remediated an issue in GitLab CE/EE affecting versions from 18.9 before 18.9.1 that could have under certain conditions, allowed an unauthenticated user to cause denial of service by sending specially crafted requests to a CI jobs API endpoint. | |
| Title | Allocation of Resources Without Limits or Throttling in GitLab | |
| First Time appeared |
Gitlab
Gitlab gitlab |
|
| Weaknesses | CWE-770 | |
| CPEs | cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Gitlab
Gitlab gitlab |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2026-02-26T15:42:29.688Z
Reserved: 2026-01-30T21:33:13.654Z
Link: CVE-2026-1725
Updated: 2026-02-26T15:42:22.016Z
Status : Analyzed
Published: 2026-02-25T21:16:36.833
Modified: 2026-02-28T01:06:15.320
Link: CVE-2026-1725
No data.
OpenCVE Enrichment
Updated: 2026-04-18T10:45:43Z