
GitLab has released emergency security updates for a maximum-severity vulnerability in Community Edition (CE) and Enterprise Edition (EE) that allows unauthenticated attackers to read arbitrary files from vulnerable servers. Tracked as CVE-2026-85706 and rated 10.0 on the CVSS scale, the flaw resides in the repository commits API and results from improper path confinement combined with […]
The post CVE-2026-85706: Critical GitLab Path Traversal Flaw Exploited in the Wild appeared first on SOC Prime.