GitLab security advisory (AV26-630)
Serial number: AV26-630 Date: June 24, 2026 On June 24, 2026, GitLab published a security advisory to address vulnerabilities in the following products: GitLab Community Edition (CE) – versions prior to 19.1.1, 19.0.3 and 18.11.6 GitLab Enterprise Edition (EE) – versions prior to 19.1.1, 19.0.3 and 18.11.6 The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates. GitLab Patch Release: 19.1.1, 19.0.3, 18.11.6 GitLab Releases
CSIRTS triage
- What
- Vulnerabilities have been discovered that require updates.
- Who is affected
- Users of GitLab Community Edition and Enterprise Edition prior to specified versions.
- Urgency
- Remediation is necessary to ensure security, though specific severity is not stated.
- Action
- Upgrade to GitLab versions 19.1.1, 19.0.3, or 18.11.6.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch GitLab Community Edition
Get an email when a new GitLab Community Edition advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://cyber.gc.ca/en/alerts-advisories/gitlab-security-advisory-av26-630
More from Canadian Centre for Cyber Security
- unknownWatchGuard security advisory (AV26-847)2026-08-25
- unknownOpenSSL security advisory (AV26-846)2026-08-25
- unknownGitea security advisory (AV26-845)2026-08-25
- unknownGoogle security advisory (AV26-844)2026-08-24
- criticalOracle security advisory – January 2026 quarterly rollup (AV26-042) – Update 22026-08-24