CISA warns of active probing for GitLab path-traversal flaw CVE-2026-85706

TL;DR
CISA warns that attackers are probing for and could exploit CVE-2026-85706, a maximum-severity GitLab path-traversal flaw that allows unauthenticated access to credentials via the repository commits API. GitLab fixed the issue in CE/EE versions 19.3.2, 19.2.6, and 19.1, and organizations are urged to patch immediately as in-the-wild probes have been observed and the flaw was added to the actively exploited catalog.
- CISA: Hackers now exploit max severity GitLab flaw in attacks BleepingComputer
- GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure The Hacker News
- Rapid Reaction: GitLab Path Traversal Vulnerability (CVE-2026-85706) watchTowr
- GitLab’s critical flaw is already drawing internet-wide probes CyberScoop
- Security Affairs newsletter Round 594 by Pierluigi Paganini – INTERNATIONAL EDITION securityaffairs.com
Want the full story? Read the original reporting
Read on BleepingComputer