← Back to feed Search feed

GitLab vulnerabilities

21 entries matching gitlab — updated 2026-09-19 · vulnfeed

CVE / IDTitleSeverityCVSSEPSSSourceDate
CVE-2026-79708GitLab has remediated an issue in GitLab EE affecting all versions from 19.0 before 19.1.8, 19.2 before 19.2.6, and 19.3HIGH8.528%ileNVD2026-09-16
CVE-2026-78252GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.3 before 19.1.8, 19.2 before 19.2.6, and 1HIGH8.233%ileNVD2026-09-16
CVE-2025-14871GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4.6 before 19.1.8, 19.2 before 19.2.6, andHIGH7.549%ileNVD2026-09-16
CVE-2026-1168GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4.6 before 19.1.8, 19.2 before 19.2.6, andHIGH7.549%ileNVD2026-09-16
CVE-2024-11222GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.0 before 19.1.8, 19.2 before 19.2.6, and 1MEDIUM6.421%ileNVD2026-09-16
CVE-2026-92133Jenkins GitLab Plugin 1.2149.vcfc32c82b_f7f and earlier caches the GitLab API client built for alternative GitLab API toMEDIUM5.413%ileNVD2026-09-16
CVE-2026-19619GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.0 before 19.1.8, 19.2 before 19.2.6, and 1MEDIUM4.723%ileNVD2026-09-16
CVE-2026-86341GitLab has remediated an issue in GitLab EE affecting all versions from 17.1 before 19.1.8, 19.2 before 19.2.6, and 19.3MEDIUM4.425%ileNVD2026-09-16
CVE-2026-16794GitLab has remediated an issue in GitLab EE affecting all versions from 18.11 before 19.1.8, 19.2 before 19.2.6, and 19.MEDIUM4.326%ileNVD2026-09-16
CVE-2026-7514GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.9 before 19.1.8, 19.2 before 19.2.6, and 1MEDIUM4.326%ileNVD2026-09-16
CVE-2026-8030GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.0 before 19.1.8, 19.2 before 19.2.6, and 1MEDIUM4.335%ileNVD2026-09-16
CVE-2026-3855GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2.7 before 19.1.8, 19.2 before 19.2.6, andLOW3.125%ileNVD2026-09-16
CVE-2026-61560`@zereight/mcp-gitlab` is a Model Context Protocol server for GitLab. Prior to version 2.1.27, the SSE transport mode (`CRITICAL9.852%ileNVD2026-09-15
CVE-2026-61559`@zereight/mcp-gitlab` is a Model Context Protocol server for GitLab. Starting in version 0.0.1 and prior to version 2.1CRITICAL9.620%ileNVD2026-09-15
CVE-2026-61568`@zereight/mcp-gitlab` is a Model Context Protocol server for GitLab. Versions prior to 2.1.30 expose the Streamable HTTCRITICAL9.626%ileNVD2026-09-15
CVE-2026-88765GitLab has remediated an issue in GitLab EE affecting all versions from 12.3 to 19.1.8, 19.2 before 19.2.6, and 19.3 befHIGH8.552%ileNVD2026-09-15
GHSA-5648-rgj9-v224@zereight/mcp-gitlab has multiple safety-control bypasses: execute_graphql read-only + allow-list bypass, unauthenticateHIGH8.1GitHub2026-09-15
CVE-2026-13210GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 19.1.8, 19.2 before 19.2.6, and 1HIGH7.729%ileNVD2026-09-15
CVE-2026-12910GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.1.8, 19.2 before 19.2.6, and 1MEDIUM5.425%ileNVD2026-09-15
CVE-2026-82837GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.1.0 before 19.1.8, 19.2 before 19.2.6, andMEDIUM5.335%ileNVD2026-09-15
CVE-2025-8197Rejected reason: Maintainers have included reasons at https://gitlab.gnome.org/GNOME/libsoup/-/issues/465MEDIUM6.6Microsoft2025-07-08