cbcvebase.
CVE-2026-10053
published 2026-08-23

CVE-2026-10053: GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.8 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain…

PriorityP263high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
0.77%
53.9th percentile
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.8 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user to achieve remote code execution due to a path traversal vulnerability in the package registry.

Affected

7 ranges
VendorProductVersion rangeFixed in
gitlabgitlab——
gitlabgitlab>= 18.8 < 19.0.619.0.6
gitlabgitlab>= 18.8.0 < 19.0.619.0.6
gitlabgitlab>= 19.1 < 19.1.419.1.4
gitlabgitlab>= 19.1.0 < 19.1.419.1.4
gitlabgitlab>= 19.2 < 19.2.219.2.2
gitlabgitlab>= 19.2.0 < 19.2.219.2.2
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.