Skip to main content
← CVE Tracker

Vendor

GitLab

2 articles

Advertisement

GitLab GraphQL Flaw CVE-2026-19478: Unauthenticated Project Deletion
HIGH
Vulnerabilities

GitLab GraphQL Flaw CVE-2026-19478: Unauthenticated Project Deletion

GitLab addresses a critical GraphQL flaw (CVE-2026-19478) allowing unauthenticated attackers to delete public projects and user data on self-managed CE/EE instances.

Runtime Rebel Intel
4 min read · Aug 18, 2026
GitLab 18.11.3 RCE via Jupyter Notebook Diff — Mitigation Guide
HIGH
Vulnerabilities

GitLab 18.11.3 RCE via Jupyter Notebook Diff — Mitigation Guide

An exploit PoC for GitLab 18.11.3 allows authenticated users to achieve RCE as the git user by requesting diffs of crafted Jupyter notebooks. Learn how to mitigate.

Runtime Rebel Intel
4 min read · Jul 25, 2026