vulnerability
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure
Critical
Summary
A critical vulnerability (CVE-2026-19478) in GitLab, allowing unauthenticated code injection and data manipulation, has been actively exploited shortly after its disclosure. This poses a significant risk to organizations using GitLab, potentially leading to data deletion, fake merge records, and compromised project maintainers. Rapid patching and mitigation strategies are crucial to prevent exploitation.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
