logo

CISA Warns of Exploited GitLab Community and Enterprise SSRF Vulnerability

ID: 19fb134c-270e-550c-8df1-045e55016897

STIX ID: report--19fb134c-270e-550c-8df1-045e55016897

Feed Name: GBHackers

Threat Score
78/100

Date Published: 2026-02-04

Date Updated: 2026-04-22

Author: Divya

...
...

The report notifies that GitLab Community and Enterprise Editions are affected by a critical SSRF vulnerability (CVE-2021-39935) that allows unauthenticated attackers to make server-side requests to internal resources; CISA has listed the flaw in its Known Exploited Vulnerabilities catalog as actively exploited, GitLab has released patches, and federal agencies are required to remediate by February 24, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.