Gitlab Path Traversal vulnerability
What is the Vulnerability? FortiGuard Labs has observed attack activity targeting CVE-2026-85706, a critical path traversal vulnerability in GitLab Community Edition and Enterprise Edition. The vulnerability affects the repository commits API and can allow an unauthenticated remote attacker to read arbitrary files from a vulnerable GitLab server due to improper path confinement and missing authentication…
|
What is the Vulnerability? |
FortiGuard Labs has observed attack activity targeting CVE-2026-85706, a critical path traversal vulnerability in GitLab Community Edition and Enterprise Edition. The vulnerability affects the repository commits API and can allow an unauthenticated remote attacker to read arbitrary files from a vulnerable GitLab server due to improper path confinement and missing authentication enforcement. The vulnerability carries a CVSS score of 10.0 and requires no privileges or user interaction. FortiGuard telemetry observed over the last 7 days shows attack activity targeting CVE-2026-85706 across multiple countries and industries. The most targeted countries include Belarus, South Korea, Germany, the People’s Republic of China, and Thailand, while the most targeted industries include Education, Technology, Telco/Carrier, Media/Communications, and Banking/Finance/Insurance. |
|
What is the recommended Mitigation? |
Affected versions include: • Upgrade immediately to GitLab 19.1.8, 19.2.6, 19.3.2, or later, as applicable. |
|
What FortiGuard Coverage is available? |
• FortiGuard IPS Service: FortiGuard IPS signature 62167 detects and blocks network-based exploitation attempts targeting CVE-2026-85706. |
