logo

GitLab Patches Multiple Vulnerabilities That Enables DoS and Code Injection Attacks

ID: cf93f771-9ce3-5897-a68f-c5c8acfb7f07

STIX ID: report--cf93f771-9ce3-5897-a68f-c5c8acfb7f07

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2026-04-09

Date Updated: 2026-05-05

Author: Abinaya

...
...

GitLab released urgent security updates for Community and Enterprise Editions (18.10.3, 18.9.5, 18.8.9) addressing multiple high-severity vulnerabilities — notably CVE-2026-5173 (authenticated server-side command execution via WebSocket, CVSS 8.5), CVE-2026-1092 and CVE-2025-12664 (unauthenticated denial-of-service) — plus several medium- and low-severity flaws. Administrators of self-managed instances are strongly advised to upgrade immediately; GitLab.com and Dedicated customers have already been patched.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.