CVE Tools

GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

The Hacker NewsBy The Hacker News

Reported exploitedGitLab CEGitLab EE

Our summary

GitLab has released patches for a critical path traversal vulnerability, CVE-2026-85706, rated CVSS 10.0, which allows unauthenticated users to read arbitrary files from servers running affected versions of GitLab CE and EE. Exposure management firm watchTowr confirmed that active probes began immediately after the flaw was disclosed, targeting log files and configuration data to exfiltrate credentials.

This defect impacts all versions prior to 19.1.8, 19.2.6, and 19.3.2 respectively, stemming from improper path confinement in the repository commits API. While this is the second major breach vector following recent GraphQL issues, experts warn that mass exploitation is imminent and advise administrators to update their systems or restrict public access to mitigate the risk.

Read at The Hacker News

The Hacker News publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store