cyber Translated · English · 2–5m lag

CVE-2026-85706 — GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability

GitLab Community Edition and Enterprise Edition contains a path traversal vulnerability that allows an unauthenticated user to read arbitrary files due to an improper path confinement and missing authentication enforcement in the repository commits API.

Reported by CISA KEV
Read the complete report at CISA KEV
Verification notice

IntelMap indexes open-source reporting. This page identifies what a source reported; it does not independently confirm the claim.

INCIDENT EVOLUTION

1 recorded state

Signal first indexedP3 · 98% quality · 1 source

Explore this day in the archive →
QUALITY CONTROL

Report this signal

Reports are anonymous and retained privately for editorial review.