CyberSecurity News
GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure
AI summary
GitLab has released patches for multiple security flaws, including a high-severity vulnerability with a CVSS score of 10.0. This vulnerability is a path traversal issue in the repository commits API that allows an unauthenticated user to read arbitrary files from the GitLab server. The flaw has been identified as CVE-2026-85706. In-the-wild probes of this vulnerability were observed within hours of its public disclosure. The vulnerability could be exploited by an unauthenticated user to access sensitive files on the server.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

