CVE-2024-12303 | GitLab Community Edition/Enterprise Edition up to 18.0.5/18.1.3/18.2.1 privileges assignment (Issue 508298 / WID-SEC-2025-1816)
A vulnerability was found in GitLab Community Edition and Enterprise Edition up to 18.0.5/18.1.3/18.2.1. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to incorrect privilege assignment.
This vulnerability is known as CVE-2024-12303. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.