GitLab security advisory (AV26-814)
Serial Number: AV26-814 Date: August 13, 2026 As of August 12, 2026, GitLab is affected by vulnerabilities in the following product: GitLab Prior to 19.0.6 Prior to 19.1.4 Prior to 19.2.2 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. GitLab Patch Release: 19.2.2, 19.1.4, 19.0.6 | GitLab Docs
CSIRTS triage
- What
- Multiple unspecified vulnerabilities affect GitLab across several versions.
- Who is affected
- GitLab deployments running versions before 19.0.6, 19.1.4, or 19.2.2.
- Urgency
- Moderate; no active exploitation reported and severity details unavailable.
- Action
- Upgrade GitLab to version 19.0.6, 19.1.4, or 19.2.2 depending on current branch.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch GitLab
Get an email when a new GitLab advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://cyber.gc.ca/en/alerts-advisories/gitlab-security-advisory-av26-814
More from Canadian Centre for Cyber Security
- unknownFreePBX security advisory (AV26-818)2026-08-14
- unknownHashiCorp security advisory (AV26-817)2026-08-14
- unknownZimbra security advisory (AV26-816)2026-08-14
- unknownWebPros security advisory (AV26-815)2026-08-13
- unknownAMD security advisory (AV26-813)2026-08-13