Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

GitLab

20 articles

CSO Online enterprise GitLab Sep 15

A maximum severity GitLab flaw could turn your CI/CD server into an attacker’s treasure trove

Yet another security vulnerability has been discovered in GitLab infrastructure, this one a perfect 10 in severity. CVE-2026-85706, the second flaw GitLab ha...

1 IOC

CSO Online → Details

Rapid7 Blog vendor GitLab Sep 14

CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild

Overview On September 10, 2026, GitLab published a critical patch release for GitLab Community Edition (CE) and Enterprise Edition (EE). The release addresse...

1 IOC

Rapid7 Blog → Details

Infosecurity Magazine general GitLab Sep 14

Hackers Exploit Maximum Severity Flaw in GitLab

CISA warns that threat actors are exploiting a vulnerability with a CVSS score of 10.

Infosecurity Magazine → Details

BleepingComputer general GitLab Sep 14

CISA: Hackers now exploit max severity GitLab flaw in attacks

The U.S.

BleepingComputer → Details

Security Affairs general GitLab Sep 13

GitLab CVE-2026-85706: One HTTP Request, No Authentication, Full File Read – Exploited Within 24 Hours

CVE-2026-85706, a CVSS 10.0 GitLab path traversal, was under active exploitation within 24 hours of disclosure.

1 IOC

Security Affairs → Details

GBHackers general GitLab Sep 12

CISA Warns of Critical GitLab Vulnerability Exploited in Attacks

The U.S.

1 IOC

GBHackers → Details

SC Media general GitLab Sep 11

Max severity GitLab path traversal flaw under active reconnaissance

The flaw could enable sensitive files to be read with just an HTTP request.

T1592

SC Media → Details

Cyberscoop general GitLab Sep 11

GitLab’s critical flaw is already drawing internet-wide probes

One flaw allows an unauthenticated attacker to read files from the server. GitLab urged operators of self-managed installations to upgrade immediately.

Cyberscoop → Details

SecurityWeek general GitLab Sep 11

GitLab Vulnerability Exploited One Day After Disclosure

The critical-severity path traversal flaw allows unauthenticated attackers to read arbitrary files from the GitLab server. The post GitLab Vulnerability Expl...

SecurityWeek → Details

CISA Advisories advisories GitLab Sep 11

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-85706 GitLab Co...

1 IOC

CISA Advisories → Details

BleepingComputer general GitLab Sep 11

GitLab urges users to patch max severity path traversal flaw

GitLab urged users on Thursday to patch their servers immediately against a maximum-severity path traversal vulnerability tracked as CVE-2023-2825. [.

1 IOC

BleepingComputer → Details

GBHackers general GitLab Aug 27

GitLab Duo Claude AI Agent Flaw Lets Attackers Execute Arbitrary Commands in CI Pipelines

GitLab has released security updates for both its Community Edition and Enterprise Edition, addressing seven vulnerabilities, including a high-severity flaw ...

1 IOC

GBHackers → Details

The Hacker News general GitLab Aug 24

⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More

A package gets installed. A login prompt opens.

The Hacker News → Details

Security Affairs general GitLab Aug 21

GitLab Warns of Active Exploitation of Critical GraphQL Flaw

GitLab flaw CVE-2026-19478 is now under active exploitation, allowing unauthenticated attackers to modify or delete public projects. WatchTowr researchers wa...

1 IOC

Security Affairs → Details

Security Affairs general GitLab Aug 21

GitLab Warns of Active Exploitation of Critical GraphQL Flaw

GitLab flaw CVE-2026-19478 is now under active exploitation, allowing unauthenticated attackers to modify or delete public projects. WatchTowr researchers wa...

1 IOC

Security Affairs → Details

Help Net Security general GitLab Aug 21

GitLab 19.3 helps enterprises scale agentic development securely

GitLab has announced updates that give enterprises more control as they scale agentic software development. GitLab Dedicated customers, who already run their...

Help Net Security → Details

The Hacker News general GitLab Aug 21

GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure

A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr. The vulnerability in q...

1 IOC

The Hacker News → Details

SecurityWeek general GitLab Aug 20

Critical GitLab Flaw Exploited Shortly After Disclosure

CVE-2026-19478 can be exploited without authentication to modify or delete public projects and user data. The post Critical GitLab Flaw Exploited Shortly Aft...

1 IOC

SecurityWeek → Details

CSO Online enterprise GitLab Aug 18

Critical GitLab flaw allows attackers to delete and modify public repos

GitLab has fixed a critical vulnerability that could allow unauthenticated attackers to perform unauthorized modifications inside code repositories or to com...

1 IOC

CSO Online → Details

Help Net Security general GitLab Aug 18

Critical GitLab flaw allows attackers to modify or delete public projects (CVE-2026-19478)

GitLab has released patches for two vulnerabilities, including a critical-severity code injection flaw that can be exploited without authentication. The vuln...

1 IOC

Help Net Security → Details

1 2 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA