← Browse

CVE-2026-10053

Medium

Elevated severity or exploit probability.

CVSS base
8.5 HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
EPSS — probability of exploitation (30 days)
0.8%
53.8th percentile
CISA KEV
Not listed
Weakness / dates
CWE-22
Published 2026-08-23 · modified 2026-08-31

Description

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.8 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user to achieve remote code execution due to a path traversal vulnerability in the package registry.

Affected

gitlab

References

Official: NVD · CVE.org