GitLab has released critical security updates addressing multiple vulnerabilities across its Community Edition (CE) and Enterprise Edition (EE), with versions 18.2.1, 18.1.3 , and 18.0.5 available for immediate installation.
See also: DevSecOps: GitLab patches multiple vulnerabilities

The new release includes fixes for six different security vulnerabilities, including two serious cross-site scripting (XSS) vulnerabilities that pose significant risks to the operation of the Kubernetes proxy. The fixes are part of a coordinated effort to address vulnerabilities identified through GitLab’s bug bounty program on HackerOne.
It is recommended that all user-managed installations be updated immediately. The most serious vulnerabilities addressed by these updates are related to XSS attacks targeting the Kubernetes proxy functionality in GitLab.
The vulnerability , CVE-2025-4700 , with a CVSS score of 8.7 , affects the operation of the Kubernetes proxy and could allow authenticated attackers to cause unintended content to be displayed, leading to XSS attacks under certain circumstances. The vulnerability affects all GitLab CE/EE versions from version 15.10 until recent fixes.
See also: GitLab Duo vulnerability allows manipulation of AI responses
At the same time, the CVE-2025-4439 vulnerability concerns a related XSS issue , which specifically affects cases where installations are served through content delivery networks (CDNs) , with a CVSS score of 7.7 .

Both vulnerabilities were discovered by security researcher joaxcar through the HackerOne platform , highlighting the effectiveness of GitLab's bug bounty program in identifying critical security issues
GitLab strongly recommends upgrading to the latest versions with security fixes immediately, noting that the GitLab.com platform already works with the updated versions, while GitLab Dedicated customers are not required to take any action.
The technical details of the security vulnerabilities will be publicly published on the GitLab issue tracker 30 days after the patches are released, ensuring transparency while providing sufficient time for system administrators to implement the necessary updates.
See also: GitLab vulnerabilities allow bypass of security checks
The fact that the vulnerabilities were discovered through the HackerOneshows how effective bug bounty programs can be in preventing attacks before they are exploited by malicious actors. This is an approach that strengthens an organization’s overall cybersecurity . Overall, timely upgrades and monitoring related announcements are key practices for maintaining a safe and reliable development environment.
Source: cybersecuritynews
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
