← Back to stories
Security

GitLab Vulnerability Under Active Exploitation Enables Unauthenticated Data Exfiltration

CVE-2026-85706 is a critical GitLab path-traversal vulnerability that has moved beyond theoretical risk into confirmed exploitation. It affects self-managed GitLab CE/EE and could allow an unauthenticated remote attacker to read arbitrary files from the GitLab.

You're reading a preview. The full article is published by InfoQ on their website.

Read the full story on InfoQ