CVE-2024-8041: GitLab

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all versions prior to 17.1.6, 17.2 prior to 17.2.4, and 17.3 prior to 17.3.1. A denial of service could occur upon importing a maliciously crafted repository using the GitHub importer.

Affected products

  • GitLab GitLab: before 17.1.6 (fixed in 17.1.6); from 17.2.0, before 17.2.4 (fixed in 17.2.4); from 17.3.0, before 17.3.1 (fixed in 17.3.1)

Published 2024-08-22. Last modified 2026-06-17.