CVE-2018-18843: GitLab

Critical severity, CVSS 10.0. EPSS: 1.6% chance of exploitation in the next 30 days.

The Kubernetes integration in GitLab Enterprise Edition 11.x before 11.2.8, 11.3.x before 11.3.9, and 11.4.x before 11.4.4 has SSRF.

Affected products

  • GitLab GitLab: from 11.0.0, before 11.2.8 (fixed in 11.2.8); from 11.3.0, before 11.3.9 (fixed in 11.3.9); from 11.4.0, before 11.4.4 (fixed in 11.4.4)

Published 2018-12-04. Last modified 2026-06-17.