Ultimate Guide: CVE-2025-3950 - Exposure of Private Personal Information to an Unauthorized Actor in GitLab

Ultimate Guide: CVE-2025-3950 - Exposure of Private Personal Information to an Unauthorized Actor in GitLab

CVE ID : CVE-2025-3950 Published : Jan. 9, 2026, 10:15 a.m. | 54 minutes ago Description : GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.3 before 18.5.5, 18.6 before 18.6.3, and 18.7 before 18.7.1 that could have allowed a user to leak certain information by referencing specially crafted images that bypass asset proxy protection. Severity: 3.5 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
LOW
Published
Jan. 9, 2026
Affected Product: GitLab

Source: Telegram CVE Monitor