CVE-2025-58445: Atlantis Exposes Service Version Publicly on /status API Endpoint
Atlantis publicly exposes detailed version information on its /status
endpoint. This information disclosure could allow attackers to identify and target known vulnerabilities associated with the specific versions, potentially compromising the service’s security posture.
References
Code Behaviors & Features
Detect and mitigate CVE-2025-58445 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →