Programming
GitLab Vulnerability Under Active Exploitation Enables Unauthenticated Data Exfiltration
Source: Information Queue · October 3, 2026
CVE-2026-85706 is a critical GitLab path-traversal vulnerability that has moved beyond theoretical risk into confirmed exploitation. It affects self-managed GitLab CE/EE and could allow an unauthenticated remote attacker to read arbitrary files from the GitLab. By Sergio De Simone
This is a summary. The full story was published by Information Queue.
Read the full story ↗