Collected every two hours from specialised publications — each link leads to the original article.
Two critical GitLab flaws can turn authenticated continuous integration and delivery (CI/CD) configuration into code execution on self-managed servers.
Zoom and GitLab have released security updates to resolve a number of security vulnerabilities that could result in denial-of-service (DoS) and remote code exe…
Cybersecurity researchers have discovered an indirect prompt injection flaw in GitLab's artificial intelligence (AI) assistant Duo that could have allowed atta…
GitLab has released security updates for Community Edition (CE) and Enterprise Edition (EE) to address eight security flaws, including a critical bug that coul…
A severe SAML authentication vulnerability affected GitLab, which could allow an adversary to bypass SAML…GitLab Addressed Critical SAML Auth Flaw With The Lat…
GitLab has released security updates to address 14 security flaws, including one critical vulnerability that could be exploited to run continuous integration a…
GitLab addressed numerous security updates with the latest release. These include a high-severity XSS vulnerability…GitLab XSS Vulnerability Could Allow Accoun…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical flaw impacting GitLab to its Known Exploited Vulnerabilities (KEV) catalo…
Days after releasing a major update, GitLab rolled out another emergency update addressing a serious…GitLab Patched A Workspace Creation Vulnerability With An …
Heads up, GitLab users! It’s time to upgrade to the latest GitLab versions, as the…GitLab Addressed A Critical Zero-Click Vulnerability With Latest Updates on …
GitLab has released security updates to address two critical vulnerabilities, including one that could be exploited to take over accounts without requiring any…
GitLab has shipped security patches to resolve a critical flaw that allows an attacker to run pipelines as another user.The issue, tracked asCVE-2023-5009(CVSS…
GitLab has recently rolled out an emergency update, patching a critical path traversal vulnerability. Users…GitLab Released Emergency Fix For Critical Vulnerab…
Heads up, GitLab users! GitLab has recently addressed multiple security bugs with the latest releases.…GitLab Patched Multiple Security Bugs, Including A Criti…
Researchers have disclosed details of a new security vulnerability in GitLab, an open-source DevOps software, that could potentially allow a remote, unauthenti…
Researchers have disclosed details of a now-patched security vulnerability in GitLab, an open-source DevOps software, that could potentially allow a remote, un…
The package gitlab before version 14.0.3-1 is vulnerable to multiple issues including cross-site request forgery, access restriction bypass, arbitrary code exe…
GitLab has addressed a security vulnerability that could have exposed private groups. The flaw existed in the Elasticsearch API thatGitLab Fixed Elasticsearch …
GitLab has recently addressed numerous security vulnerabilities in their latest software releases. While all the flaws belonged to different categories,GitLab …
Upstream changelog: https://gitlab.com/dalibo/postgresql_anonymizer/-/releases [core] CVE-2026-19633: Escalation via custom types, operators and rangevars [cor…
Upstream changelog: https://gitlab.com/dalibo/postgresql_anonymizer/-/releases [core] CVE-2026-19633: Escalation via custom types, operators and rangevars [cor…