Securityonline.Info Critical GitLab Gateway Flaw CVE-2026-1868 Allows RCE
Article Content
Browse articles
GitLab has patched a critical vulnerability identified as CVE-2026-1868, which has a CVSS score of 9.9. This flaw affects the self-hosted AI Gateway, allowing remote code execution (RCE) through insecure templates. Users of GitLab's self-hosted solutions are advised to apply the patch immediately.
Ask AI about this cluster
Answers cite the sources they use
Updated 210d ago How this analysis works
Timeline
2026-02-08
GitLab patches CVE-2026-1868 critical flaw
Recent
Vulnerability allows RCE via insecure templates
More articles in this cluster (4)
Following this threat?
Track CVE-2026-1868 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
GitLab Issues Urgent Patch for Critical AI Gateway RCE Flaw GitLab has disclosed a critical remote code execution vulnerability, CVE-2026-90970, affecting self-hosted AI Gateways. The flaw allows authenticated users with Duo Agent Platform access to escape a prompt template sandbox and execute arbitrary commands on the gateway. GitLab released patches in versions 19.2.4…
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…