GitLab vulnerability CVE-2026-19478 carries a CVSS 9.4 rating, letting unauthenticated attackers remotely delete or modify public projects with no login required. An emergency patch released August 17 ...
Hackers started exploiting CVE-2026-19478, a critical, unauthenticated GitLab vulnerability, shortly after public disclosure.
Just days after the disclosure of the almost perfect 10 vulnerability CVE-2026-19478, hackers are already on the warpath.
A lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential ...
To prevent possible attacks, administrators of on-premise GitLab installations should install the latest security updates promptly. Otherwise, instances are vulnerable to 13 vulnerabilities. No ...
GitLab has patched CVE-2026-19478, a critical code injection vulnerability that can be exploited without authentication.
GitLab has released security updates to address multiple vulnerabilities in the company's DevSecOps platform, including ones enabling attackers to take over accounts and inject malicious jobs in ...
GitLab has patched a high-severity two-factor authentication bypass impacting community and enterprise editions of its software development platform. Tracked as CVE-2026-0723, this vulnerability stems ...