GitLab

Security Scorecard

Score

95C

Total CVEs

33

Patch Rate

94%

31 patched

Avg Response

40d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical0
High16
Medium17
Low0

Patch Status

Patched31 (94%)
Partial/Workaround0 (0%)
Unpatched2 (6%)

CVEs (34)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-13927GitLab Denial of Service VulnerabilityHigh7.5-Patched
CVE-2025-13928GitLab API Denial of ServiceHigh7.5-Patched
CVE-2026-0723GitLab CE/EE Authentication BypassHigh7.4-Patched
CVE-2026-1102GitLab SSH Denial of ServiceMedium5.3-Patched
CVE-2025-11224GitLab Kubernetes Proxy Cross-Site ScriptingHigh7.7-Patched
CVE-2025-10569GitLab Denial of Service VulnerabilityMedium6.5-Patched
CVE-2025-11246GitLab GraphQL Runner Association BypassMedium5.4-Patched
CVE-2025-13761GitLab Remote Code ExecutionHigh8.0-Patched
CVE-2025-13772GitLab EE AI Model Settings BypassHigh7.1-Patched
CVE-2025-9222GitLab Flavored Markdown Cross-Site ScriptingHigh8.7-Patched