GitLab Critical Patch Release: 19.2.4, 19.1.6, 19.0.8, 18.11.11
Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.4, CVEs: CVE-2026-19650, CVE-2026-19478, Summary: CVE-2026-19478 9.4 GitLab has remediated an issue that under certain conditions could allow an unauthenticated user to remotely modify or delete public projects and user data via a GraphQL directive. CVE-2026-19650 7.1 GitLab has remediated an issue that under certain conditions could have allowed an unauthenticated user to execute mutations via GET…
CVSS 9.4 CVE-2026-19478 CVE-2026-19650 GitLab FI IT US 3 zdrojů