HackerFeeds

CyberSecurity News

GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

The Hacker News
· September 11, 2026

AI summary

GitLab has released patches for multiple security flaws, including a high-severity vulnerability with a CVSS score of 10.0. This vulnerability is a path traversal issue in the repository commits API that allows an unauthenticated user to read arbitrary files from the GitLab server. The flaw has been identified as CVE-2026-85706. In-the-wild probes of this vulnerability were observed within hours of its public disclosure. The vulnerability could be exploited by an unauthenticated user to access sensitive files on the server.

Read the full article at The Hacker Newsthehackernews.com/2026/09/gitlab-cvss-10-file-read-flaw-draws-in.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.