CVE-2018-3710: Debian Linux

High severity, CVSS 7.8. EPSS: 2.8% chance of exploitation in the next 30 days.

Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable to an Insecure Temporary File in the project import component resulting remote code execution.

Affected products

  • Debian Debian Linux: version 9.0 only
  • GitLab GitLab: from 8.9.0, up to and including 9.5.10; from 10.0.0, up to and including 10.1.5; from 10.0.0, up to and including 10.1.15; after 10.2.0, up to and including 10.2.5; from 10.2.0, up to and including 10.2.5; after 10.3.0, up to and including 10.3.3; …

Published 2018-03-21. Last modified 2026-06-17.