CVE-2025-0679 | GitLab Community Edition/Enterprise Edition up to 17.10.6/17.11.2/18.0.0 Email Address exposure of private personal information to an unauthorized actor (EUVD-2025-16149 / Nessus ID 237109)
A vulnerability was found in GitLab Community Edition and Enterprise Edition up to 17.10.6/17.11.2/18.0.0. It has been classified as problematic. This affects an unknown part of the component Email Address Handler. The manipulation leads to exposure of private personal information to an unauthorized actor.
This vulnerability is uniquely identified as CVE-2025-0679. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.