Skip to content
Arbitrary File Reading Vulnerability in GitLab (CVE-2026-85706)

Arbitrary File Reading Vulnerability in GitLab (CVE-2026-85706)

First seen 14 Sep 2026, 10:47 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 14, 2026 at 11:21 UTC
  • CVE-2026-85706 allows unauthorized file access in GitLab CE/EE.
  • Affected versions include 18.7 and later; patches were released on September 10, 2026.
  • Proof-of-concept code is available, indicating active exploitation potential.

GitLab's Workhorse component has a vulnerability (CVE-2026-85706) allowing unauthenticated attackers to read arbitrary files. This issue affects GitLab CE/EE versions 18.7 and later. Attackers can exploit this by manipulating request parameters, bypassing security filters. The vulnerability was publicly disclosed on September 12, 2026, and added to CISA's KEV list on September 11, 2026. Proof-of-concept code is available, enabling exploitation without authentication. The vulnerability allows access to sensitive files like '/etc/passwd'. GitLab has released patches for affected versions on September 10, 2026. Users are urged to update immediately to mitigate risks.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-09-10
Patches released for affected GitLab versions
GitLab released updates to fix the vulnerability in versions 19.1.8, 19.2.6, and 19.3.2.
Sploitus
2026-09-11
CISA adds CVE-2026-85706 to KEV list
CISA confirmed active exploitation of the vulnerability, prompting its addition to the KEV catalog.
Sploitus
2026-09-12
CVE-2026-85706 published
The vulnerability was publicly disclosed, detailing its impact and exploitation method.
Sploitus

More articles in this cluster (2)

Following this threat?

Track CVE-2026-85706 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed