CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

GitLab security advisory (AV26-758)

unknown
Serial number: AV26-758 Date: July 30, 2026 As of July 29, 2026, GitLab is affected by vulnerabilities in the following product: GitLab Prior to 19.0.5 Prior to 19.1.3 Prior to 19.2.1 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. GitLab Patch Release: 19.2.1, 19.1.3, 19.0.5 GitLab release notes

CSIRTS triage

vendor: GitLabproduct: GitLabaffected: Prior to 19.0.5, Prior to 19.1.3, Prior to 19.2.1
What
Multiple vulnerabilities have been discovered in GitLab.
Who is affected
Users of GitLab prior to the specified versions are affected.
Urgency
Remediation is necessary, but the vulnerabilities are not actively exploited.
Action
Users should apply the latest patch releases.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch GitLab

Get an email when a new GitLab advisory drops — max one per day, one-click unsubscribe.

Details

Source
Canadian Centre for Cyber Security (CA · national-cert · site)
Severity
unknown
Published
2026-07-30
Exploitation
Not in CISA KEV at last sync

Original advisory: https://cyber.gc.ca/en/alerts-advisories/gitlab-security-advisory-av26-758

More from Canadian Centre for Cyber Security