Skip to content
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches

Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches

First seen 13 Sep 2026, 06:26 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 13, 2026 at 07:13 UTC
  • GitLab CVE-2026-85706 exploited within hours of disclosure.
  • Microsoft's patch update addresses 974 vulnerabilities, a record number.
  • Anthropic disrupted state-sponsored cyber-espionage campaigns linked to Russia.

A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows unauthenticated attackers to read arbitrary files from affected servers, posing a significant risk to users of GitLab Community and Enterprise Editions. Additionally, Anthropic disrupted state-sponsored cyber-espionage campaigns linked to Russia, targeting over 20 government entities, and identified industrial-scale attacks from Chinese labs using AI for malicious purposes. CISA added CVE-2026-85706 to its Known Exploited Vulnerabilities catalog on September 11, 2026, with a federal remediation deadline set for September 14, 2026. Organizations are advised to apply patches immediately and monitor for unauthorized access.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-07-27
CVE-2026-42016 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-08-12
CVE-2026-42018 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-05
CVE-2026-86060 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-08
CVE-2026-69730 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-08
CVE-2026-84869 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-08
CVE-2026-85880 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-08
CVE-2026-81963 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-08
CVE-2026-69829 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-11
CVE-2026-85706 added to CISA KEV
CISA listed the GitLab path-traversal vulnerability as actively exploited, requiring federal remediation by September 14.
Defendwork
2026-09-12
GitLab CVE-2026-85706 publicly disclosed
The critical path traversal vulnerability was disclosed, leading to immediate exploitation attempts in the wild.
Defendwork

More articles in this cluster (5)

Following this threat?

Track Gtg-20006, ConnectWise and CVE-2026-42016 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed