CVE-2025-2408 | GitLab Community Edition/Enterprise Edition up to 17.8.6/17.9.5/17.10.3 IP Restrictions insufficient granularity of access control (Nessus ID 234129)
A vulnerability classified as problematic was found in GitLab Community Edition and Enterprise Edition up to 17.8.6/17.9.5/17.10.3. Affected by this vulnerability is an unknown functionality of the component IP Restrictions Handler. The manipulation leads to insufficient granularity of access control.
This vulnerability is known as CVE-2025-2408. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.