vulnerability Critical GitLab Flaw Exploited Shortly After Disclosure A critical vulnerability in GitLab (CVE-2026-19478) was quickly exploited by threat actors shortly after its disclosure. The code injection flaw allowed unauthenticated users to delete public projects and modify user data via GraphQL, and WatchTower detected in-the-wild exploitation attempts within days. This highlight… SecurityWeek · Aug 20, 2026 Critical CVE-2026-19478gitlabvulnerabilitygraphql
vulnerability Multiples vulnérabilités dans GitLab (18 août 2026) Multiple vulnerabilities have been discovered in GitLab, including one that could allow attackers to compromise data integrity and another through Cross-Site Request Forgery (CSRF). GitLab versions 19.0.x through 19.0.8,… CERT-FR · Aug 18, 2026 Medium CVE-2026-19478CVE-2026-19650gitlabvulnerabilitysecurity
vulnerability Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects GitLab has released a critical security update to address a vulnerability (CVE-2026-19478) that could allow unauthenticated attackers to delete public projects and user data. The flaw, which was discovered outside of Git… The Hacker News · Aug 17, 2026 Critical CVE-2026-19478CVE-2026-19650vulnerabilitygraphqlcve
vulnerability Multiples vulnérabilités dans GitLab (13 août 2026) Multiple vulnerabilities have been discovered in GitLab, including remote code injection, denial of service, and privilege escalation. These issues affect versions 19.1.x through 19.1.4, 19.2.x through 19.2.2, and all ve… CERT-FR · Aug 13, 2026 High CVE-2025-9486CVE-2026-15216CVE-2026-15217gitlabvulnerabilityremote code injection
threat-intel Polish convenience store chain Żabka hacked through third-party account Polish convenience store chain Żabka was hacked through a third-party contractor's account, leading to the potential exposure of internal data and systems. While payment systems and customer data were reportedly unaffect… The Record · Aug 4, 2026 Medium PLsupply-chainthird-partydata-breach
vulnerability Multiples vulnérabilités dans GitLab (30 juillet 2026) Multiple vulnerabilities have been discovered in GitLab, including remote denial-of-service, data confidentiality breaches, and remote cross-site scripting (XSS). These vulnerabilities affect GitLab Community Edition and… CERT-FR · Jul 30, 2026 Medium CVE-2025-14562CVE-2026-12436CVE-2026-13113vulnerabilitygitlabcve