← Back to feed
general Security Affairs

GitLab CVE-2026-85706: One HTTP Request, No Authentication, Full File Read – Exploited Within 24 Hours

Security Affairs GitLab

CVE-2026-85706, a CVSS 10.0 GitLab path traversal, was under active exploitation within 24 hours of disclosure.

1 IOC
Read the full story Security Affairs →

Related Coverage

general ShinyHunters claims attack on FBI exposes almost all agents Cyberscoop · Sep 22 general BigCommerce merchants impacted by third-party app data breach SC Media · Sep 22 general VA criticizes Baylor Genetics for delayed notification after data breach SC Media · Sep 22