CVE-2025-3396 | GitLab Enterprise Edition up to 17.11.5/18.0.3/18.1.1 API Request authorization (EUVD-2025-20986)
A vulnerability classified as problematic was found in GitLab Enterprise Edition up to 17.11.5/18.0.3/18.1.1. This vulnerability affects unknown code of the component API Request Handler. The manipulation leads to incorrect authorization.
This vulnerability was named CVE-2025-3396. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.