Skip to content
feed: live
>_0dayNews
← All vendors
Vendor

GitLab

Vulnerabilities in GitLab Community and Enterprise Edition — the DevOps platform that, when compromised, can expose an organization's entire source code history and CI/CD pipeline secrets.

7 CVEs6 articlesRSS
CVEs
CVE-2026-85706
[ CRITICAL ]CVSS 10.0EPSS 93.0%kev

GitLab Path Traversal Allows Unauthenticated File Read

GitLab CE/EE contains a path traversal flaw due to improper path confinement and missing access controls, allowing an unauthenticated attacker to read arbitrary files from the server.

GitLab / GitLab CE/EE
CVE-2026-10053
[ HIGH ]CVSS 8.5EPSS 0.8%patched

GitLab CE/EE authenticated RCE via path traversal in package registry

GitLab CE/EE 18.8 through 19.2 allow an authenticated user to achieve RCE via path traversal in the package registry. Fixed in 19.0.6, 19.1.4, 19.2.2.

GitLab / GitLab CE/EE (self-managed, versions 18.8 – 19.2)
CVE-2026-19478
[ CRITICAL ]CVSS 9.4EPSS 60.2%patched

GitLab GraphQL unauthenticated project deletion and modification

Critical GraphQL flaw in GitLab CE/EE lets unauthenticated attackers modify or delete public projects and user data. Patched; self-hosted instances need manual update.

GitLab / GitLab Community Edition and Enterprise Edition
CVE-2021-22175
[ MEDIUM ]CVSS 6.8EPSS 53.4%kev

GitLab Server-Side Request Forgery (SSRF) Vulnerability

GitLab contains a server-side request forgery (SSRF) vulnerability when requests to the internal network for webhooks are enabled.

GitLab / GitLab
CVE-2021-39935
[ MEDIUM ]CVSS 6.8EPSS 35.6%kev

GitLab Community and Enterprise Editions Server-Side Request Forgery (SSRF) Vulnerability

GitLab Community and Enterprise Editions contain a server-side request forgery vulnerability which could allow unauthorized external users to perform Server Side Requests via the CI Lint API.

GitLab / Community and Enterprise Editions
CVE-2023-7028
[ CRITICAL ]CVSS 10.0EPSS 94.6%kev

GitLab Community and Enterprise Editions Improper Access Control Vulnerability

GitLab Community and Enterprise Editions contain an improper access control vulnerability. This allows an attacker to trigger password reset emails to be sent to an unverified email address to ultimately facilitate an account takeover.

GitLab / GitLab CE/EE
CVE-2021-22205
[ CRITICAL ]CVSS 9.9EPSS 99.7%kev

GitLab CE/EE ExifTool Remote Code Execution

An improper-validation vulnerability in GitLab Community Edition and Enterprise Edition allows an unauthenticated attacker to achieve remote code execution by uploading a crafted image file processed through a vulnerable ExifTool image-metadata parser.

GitLab / GitLab CE/EE
Articles
~/articles/2026-09-16-gitlab-cve-2026-85706-rapid7-exploitation-tracking
Rapid7 Tracks Active Exploits Against GitLab Path Traversal
gitlab

Rapid7 Tracks Active Exploits Against GitLab Path Traversal

Rapid7's ETR on CVE-2026-85706 confirms active exploitation the day CISA's federal deadline expired. Unpatched GitLab instances are overdue.

read →
~/articles/2026-09-12-gitlab-cve-2026-85706-path-traversal-kev
GitLab CVSS 10 Path Traversal Exploited Same Day as Patch
gitlab

GitLab CVSS 10 Path Traversal Exploited Same Day as Patch

CVE-2026-85706 lets an unauthenticated attacker read any file on a GitLab server. Exploitation probes started within hours of Thursday's patch release. CISA has it in KEV.

read →
~/articles/2026-08-24-gitlab-cve-2026-10053-rce-package-registry
GitLab Patches RCE in Package Registry (CVE-2026-10053)
gitlab

GitLab Patches RCE in Package Registry (CVE-2026-10053)

GitLab CE/EE authenticated RCE via path traversal in the package registry affects 18.8 through 19.2. Upgrade to 19.0.6, 19.1.4, or 19.2.2 now.

read →
~/articles/2026-08-17-gitlab-cve-2026-19478-graphql-unauth
Critical GitLab Flaw Lets Attackers Delete Projects
gitlab

Critical GitLab Flaw Lets Attackers Delete Projects

GitLab patched CVE-2026-19478 (CVSS 9.4): unauthenticated attackers can delete or modify public projects. Self-hosted instances need immediate manual update.

read →
~/articles/2026-07-25-gitlab-18-11-3-rce-poc-published
GitLab RCE PoC Published: No Admin Rights Required
gitlab

GitLab RCE PoC Published: No Admin Rights Required

A working RCE exploit for self-managed GitLab 18.11.3 is now public. Any authenticated user can execute server commands as git — no admin rights needed.

read →
~/articles/2026-07-06-gitlab-exiftool-rce-cve-2021-22205
GitLab's ExifTool RCE Sat Unrecognized for Months
Explainer
gitlab

GitLab's ExifTool RCE Sat Unrecognized for Months

CVE-2021-22205 was quietly fixed in April 2021 — but its full unauthenticated remote-code-execution severity wasn't widely understood until late 2021, by which point mass exploitation had already begun.

read →