GitLab

33 known vulnerabilities in GitLab, 8 critical, 5 actively exploited, with patch priority, exploit likelihood and the news covering them.

Recently exploited

  • CVE-2026-85706 CVSS 10.0 critical · actively exploited GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
  • CVE-2023-7028 CVSS 9.8 critical · actively exploited GitLab Community and Enterprise Editions Improper Access Control Vulnerability
  • CVE-2021-39935 CVSS 7.5 high · actively exploited GitLab Community and Enterprise Editions Server-Side Request Forgery (SSRF) Vulnerability
  • CVE-2021-22175 CVSS 9.8 critical · actively exploited GitLab Server-Side Request Forgery (SSRF) Vulnerability
  • CVE-2021-22205 CVSS 10.0 critical · actively exploited GitLab Community and Enterprise Editions Remote Code Execution Vulnerability

Latest vulnerabilities

  • CVE-2026-8937 CVSS 4.3 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.0 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-84739 CVSS 8.7 high GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.11 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-4523 CVSS 3.7 low GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.11 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-10518 CVSS 4.3 medium GitLab has remediated an issue in GitLab EE affecting all versions from 17.9 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-93577 CVSS 9.9 critical GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-92874 CVSS 5.4 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-92628 CVSS 3.1 low GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-92530 CVSS 4.3 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-92529 CVSS 4.3 medium GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-92470 CVSS 7.7 high GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-89078 CVSS 9.9 critical GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
  • CVE-2026-86341 CVSS 4.4 medium GitLab has remediated an issue in GitLab EE affecting all versions from 17.1 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-8030 CVSS 4.3 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.0 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-7514 CVSS 4.3 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.9 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-79708 CVSS 8.5 high GitLab has remediated an issue in GitLab EE affecting all versions from 19.0 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-78252 CVSS 6.1 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.3 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-3855 CVSS 6.8 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before…
  • CVE-2026-1168 CVSS 7.5 high GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4.6 before 19.1.8, 19.2 before 19.2.6, and 19.3 before…
  • CVE-2026-19619 CVSS 4.7 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.0 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-16794 CVSS 4.3 medium GitLab has remediated an issue in GitLab EE affecting all versions from 18.11 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2025-14871 CVSS 7.5 high GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4.6 before 19.1.8, 19.2 before 19.2.6, and 19.3 before…
  • CVE-2024-11222 CVSS 6.4 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.0 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-88765 CVSS 8.5 high GitLab has remediated an issue in GitLab EE affecting all versions from 12.3 to 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 under…
  • CVE-2026-82837 CVSS 4.3 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.1.0 before 19.1.8, 19.2 before 19.2.6, and 19.3 before…
  • CVE-2026-13210 CVSS 7.7 high GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-12910 CVSS 5.4 medium GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2…
  • CVE-2026-87719 CVSS 9.9 critical GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 before 18.11.12, 19.0 before 19.0.9, 19.1 before 19.1.8, 19.2…
  • CVE-2026-85706 CVSS 10.0 critical · actively exploited GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
  • CVE-2026-19478 CVSS 9.1 critical GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.11.11, 19.0 before 19.0.8, 19.1 before 19.1.6…
  • CVE-2023-7028 CVSS 9.8 critical · actively exploited GitLab Community and Enterprise Editions Improper Access Control Vulnerability