Skip to content

CISA Warns of GitLab Community and Enterprise Editions SSRF Vulnerability Exploited in Attacks

Cybersecuritynews Abinaya February 4, 2026

A critical GitLab vulnerability has been added to the Known Exploited Vulnerabilities (KEV) catalog. Threat actors are actively exploiting a server-side request forgery (SSRF) flaw in GitLab Community and Enterprise editions. The vulnerability, tracked as CVE-2021-39935, poses significant risks to organizations using affected versions of GitLab. The SSRF vulnerability allows unauthorized external attackers to perform […]

Extracted Entities

Platforms (1)

Vulnerabilities (1)