GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure

Read full story on The Hacker News
Share
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure
AI disclosure

Summary

A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr. The vulnerability in question is CVE-2026-19478 (CVSS score: 9.4), a case of code injection that allows an unauthenticated attacker to modify or delete publicly accessible GitLab projects and rewrite their data under certain conditions without requiring

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.