CVE-2025-1677 | GitLab Community Edition/Enterprise Edition up to 17.8.6/17.9.5/17.10.3 CI Pipeline Export allocation of resources (Nessus ID 234128)
A vulnerability classified as critical has been found in GitLab Community Edition and Enterprise Edition up to 17.8.6/17.9.5/17.10.3. Affected is an unknown function of the component CI Pipeline Export Handler. The manipulation leads to allocation of resources.
This vulnerability is traded as CVE-2025-1677. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.