PANews
PANews|Sep 15, 2026 03:16
[SlowMist: GitLab Fixes a Critical Vulnerability, Users Should Upgrade Promptly] According to monitoring by SlowMist, GitLab CE/EE contains a critical path traversal vulnerability, CVE-2026-85706, with a CVSS score of 10.0. An unauthenticated attacker can exploit the Repository Commits API to read arbitrary files on affected GitLab servers. GitLab has released security patches. Affected versions include versions from 18.7 up to but not including 19.1.8, 19.2 up to but not including 19.2.6, and 19.3 up to but not including 19.3.2. Self-managed GitLab users should immediately upgrade to 19.1.8, 19.2.6, or 19.3.2, and check logs and potentially exposed credentials after applying the patch.
+5
Mentioned
Share To

Timeline

HotFlash

APP

X

Telegram

Facebook

Reddit

CopyLink

Hot Reads