Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-9222

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2.2 before 18.5.5, 18.6 before 18.6.3, and 18.7 before 18.7.1 that could have allowed an authenticated user to achieve stored cross-site scripting by exploiting GitLab Flavored Markdown.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 1.8%
CVSS Severity
CVSS v3 Score 8.7
Products affected by CVE-2025-9222
  • Gitlab » Gitlab » Version: Any
    cpe:2.3:a:gitlab:gitlab:*
  • Gitlab » Gitlab » Version: 18.2.2
    cpe:2.3:a:gitlab:gitlab:18.2.2
  • Gitlab » Gitlab » Version: 18.2.5
    cpe:2.3:a:gitlab:gitlab:18.2.5
  • Gitlab » Gitlab » Version: 18.2.6
    cpe:2.3:a:gitlab:gitlab:18.2.6
  • Gitlab » Gitlab » Version: 18.2.7
    cpe:2.3:a:gitlab:gitlab:18.2.7
  • Gitlab » Gitlab » Version: 18.2.8
    cpe:2.3:a:gitlab:gitlab:18.2.8
  • Gitlab » Gitlab » Version: 18.3.0
    cpe:2.3:a:gitlab:gitlab:18.3.0
  • Gitlab » Gitlab » Version: 18.3.2
    cpe:2.3:a:gitlab:gitlab:18.3.2
  • Gitlab » Gitlab » Version: 18.3.3
    cpe:2.3:a:gitlab:gitlab:18.3.3
  • Gitlab » Gitlab » Version: 18.3.4
    cpe:2.3:a:gitlab:gitlab:18.3.4
  • Gitlab » Gitlab » Version: 18.3.5
    cpe:2.3:a:gitlab:gitlab:18.3.5
  • Gitlab » Gitlab » Version: 18.3.6
    cpe:2.3:a:gitlab:gitlab:18.3.6
  • Gitlab » Gitlab » Version: 18.4.0
    cpe:2.3:a:gitlab:gitlab:18.4.0
  • Gitlab » Gitlab » Version: 18.4.1
    cpe:2.3:a:gitlab:gitlab:18.4.1
  • Gitlab » Gitlab » Version: 18.4.2
    cpe:2.3:a:gitlab:gitlab:18.4.2
  • Gitlab » Gitlab » Version: 18.4.3
    cpe:2.3:a:gitlab:gitlab:18.4.3
  • Gitlab » Gitlab » Version: 18.4.4
    cpe:2.3:a:gitlab:gitlab:18.4.4
  • Gitlab » Gitlab » Version: 18.5.0
    cpe:2.3:a:gitlab:gitlab:18.5.0
  • Gitlab » Gitlab » Version: 18.5.1
    cpe:2.3:a:gitlab:gitlab:18.5.1
  • Gitlab » Gitlab » Version: 18.5.2
    cpe:2.3:a:gitlab:gitlab:18.5.2
  • Gitlab » Gitlab » Version: 18.7.0
    cpe:2.3:a:gitlab:gitlab:18.7.0


Contact Us

Shodan ® - All rights reserved