logo

CISA Warns of GitLab Community and Enterprise Editions SSRF Vulnerability Exploited in Attacks

ID: b0400905-f39d-52b0-a210-2abb405add6b

STIX ID: report--b0400905-f39d-52b0-a210-2abb405add6b

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-02-04

Date Updated: 2026-04-21

Author: Abinaya

...
...

CISA warns that a critical SSRF vulnerability (CVE-2021-39935) in GitLab Community and Enterprise editions is being actively exploited; organizations should apply vendor patches or mitigations (including disabling the CI Lint API if necessary) and review GitLab access logs, with federal agencies required to remediate by Feb 24, 2026 under BOD 22-01.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.