CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

GitLab security advisory (AV26-814)

unknown
Serial Number: AV26-814 Date: August 13, 2026 As of August 12, 2026, GitLab is affected by vulnerabilities in the following product: GitLab Prior to 19.0.6 Prior to 19.1.4 Prior to 19.2.2 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. GitLab Patch Release: 19.2.2, 19.1.4, 19.0.6 | GitLab Docs

CSIRTS triage

vendor: GitLabproduct: GitLabOtheraffected: Prior to 19.0.6, prior to 19.1.4, prior to 19.2.2
What
Multiple unspecified vulnerabilities affect GitLab across several versions.
Who is affected
GitLab deployments running versions before 19.0.6, 19.1.4, or 19.2.2.
Urgency
Moderate; no active exploitation reported and severity details unavailable.
Action
Upgrade GitLab to version 19.0.6, 19.1.4, or 19.2.2 depending on current branch.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch GitLab

Get an email when a new GitLab advisory drops — max one per day, one-click unsubscribe.

Details

Source
Canadian Centre for Cyber Security (CA · national-cert · site)
Severity
unknown
Published
2026-08-13
Exploitation
Not in CISA KEV at last sync

Original advisory: https://cyber.gc.ca/en/alerts-advisories/gitlab-security-advisory-av26-814

More from Canadian Centre for Cyber Security