GitLab Patches Critical Vulnerability, Users Urged to Upgrade
GitLab has released security patches to address a critical path traversal vulnerability, CVE-2026-85706, which carries a CVSS score of 10. According to SlowMist, the flaw allows unauthenticated attackers to read arbitrary files on affected servers via the Repository Commits API. Self-managed GitLab users are advised to immediately upgrade to versions 19.1.8, 19.2.6, or 19.3.2 and review logs for potential credential exposure.
Summaries are written by AI from the original article. Not investment advice.