GitLab security advisory (AV26-758)
Serial number: AV26-758 Date: July 30, 2026 As of July 29, 2026, GitLab is affected by vulnerabilities in the following product: GitLab Prior to 19.0.5 Prior to 19.1.3 Prior to 19.2.1 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. GitLab Patch Release: 19.2.1, 19.1.3, 19.0.5 GitLab release notes
CSIRTS triage
- What
- Multiple vulnerabilities have been discovered in GitLab.
- Who is affected
- Users of GitLab prior to the specified versions are affected.
- Urgency
- Remediation is necessary, but the vulnerabilities are not actively exploited.
- Action
- Users should apply the latest patch releases.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch GitLab
Get an email when a new GitLab advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://cyber.gc.ca/en/alerts-advisories/gitlab-security-advisory-av26-758
More from Canadian Centre for Cyber Security
- unknownGoogle security advisory (AV26-768)2026-07-31
- unknownRails security advisory (AV26-767)2026-07-31
- unknownSolarWinds security advisory (AV26-766)2026-07-31
- unknownGladinet security advisory (AV26-765)2026-07-30
- unknownPHP Group security advisory (AV26-764)2026-07-30