GitLab

Security Scorecard

Score

95C

Total CVEs

33

Patch Rate

94%

31 patched

Avg Response

40d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical0
High16
Medium17
Low0

Patch Status

Patched31 (94%)
Partial/Workaround0 (0%)
Unpatched2 (6%)

CVEs (34)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12716GitLab CE/EE Cross-Site Scripting VulnerabilityHigh8.7-Patched
CVE-2025-12029GitLab Swagger UI BypassHigh8.016dUnpatched
CVE-2025-8405GitLab Security Patch ReleaseHigh7.7-Patched
CVE-2025-12562GitLab Denial of Service VulnerabilityHigh7.5-Patched
CVE-2025-11984GitLab WebAuthn BypassMedium6.8-Patched
CVE-2025-14157GitLab Denial of Service VulnerabilityMedium6.5-Patched
CVE-2025-4097GitLab Denial of Service VulnerabilityMedium6.5-Patched
CVE-2025-13978GitLab CE/EE Privilege EscalationMedium4.322dUnpatched
CVE-2025-11247GitLab GraphQL Query VulnerabilityMedium4.3-Patched
CVE-2024-9183GitLab CE/EE Authentication BypassHigh7.7-Patched