{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-05T07:52:20.343","vulnerabilities":[{"cve":{"id":"CVE-2024-12379","sourceIdentifier":"cve@gitlab.com","published":"2025-02-12T15:15:12.707","lastModified":"2025-08-06T20:17:22.707","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"A denial of service vulnerability in GitLab CE/EE affecting all versions from 14.1 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to impact the availability of GitLab via unbounded symbol creation via the scopes parameter in a Personal Access Token."},{"lang":"es","value":"Una vulnerabilidad de denegación de servicio en GitLab CE/EE que afecta a todas las versiones desde la 14.1 anterior a la 17.6.5, la 17.7 anterior a la 17.7.4 y la 17.8 anterior a la 17.8.2 permite a un atacante afectar la disponibilidad de GitLab mediante la creación de símbolos ilimitados por medio del parámetro scopes en un token de acceso personal."}],"metrics":{"cvssMetricV31":[{"source":"cve@gitlab.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","baseScore":6.5,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":3.6}]},"weaknesses":[{"source":"cve@gitlab.com","type":"Secondary","description":[{"lang":"en","value":"CWE-770"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*","versionStartIncluding":"14.1.0","versionEndExcluding":"17.6.5","matchCriteriaId":"C45D5945-9302-40BA-AD99-D22199AADAF0"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"14.1.0","versionEndExcluding":"17.6.5","matchCriteriaId":"CBAA7DD8-96CE-4123-A507-FE9E002496CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*","versionStartIncluding":"17.7.0","versionEndExcluding":"17.7.4","matchCriteriaId":"AC284F33-4C92-4C89-AC16-3C111D5ED888"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"17.7.0","versionEndExcluding":"17.7.4","matchCriteriaId":"23EE6F1C-8A6C-40F7-A89D-D97F9070697C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*","versionStartIncluding":"17.8.0","versionEndExcluding":"17.8.2","matchCriteriaId":"840C2B42-F51F-459A-B365-FEA1A2EF7F42"},{"vulnerable":true,"criteria":"cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"17.8.0","versionEndExcluding":"17.8.2","matchCriteriaId":"C801E385-FAD0-44A5-BDE2-49708E256110"}]}]}],"references":[{"url":"https://gitlab.com/gitlab-org/gitlab/-/issues/508559","source":"cve@gitlab.com","tags":["Exploit","Issue Tracking","Patch"]},{"url":"https://hackerone.com/reports/2871791","source":"cve@gitlab.com","tags":["Permissions Required"]}]}}]}