Skip to main content
CyberSingle-sourceHighDevelopingFeatured
7.4

Critical GitLab Path Traversal Flaw (CVSS 10) Threatens Software Supply Chains

A maximum-severity path traversal vulnerability (CVE-2026-85706, CVSS 10) affects GitLab CE and EE, enabling potential remote code execution and supply-chain compromise. Exploitation details are not yet public, but the flaw's severity and GitLab's widespread use in CI/CD pipelines elevate risk. Organizations should prioritize patching and monitor for active exploitation.

Dark Readingabout 9 hours agoengCredibility 34%View source

Score Breakdown

Mosaic Score7.4
Confidence0.9
Significance0.8
Source credibility0.3
Source

Related signals

8 found