THREAT OPS › CVEs › CVE-2026-85706
CVE-2026-85706 — GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
GitLab Community Edition and Enterprise Edition contains a path traversal vulnerability that allows an unauthenticated user to read arbitrary files due to an improper path confinement and missing authentication enforcement in the repository commits API.
Vulnerability details
- Affected productsCommunity Edition and Enterprise Edition
- KEV remediation due2026-09-14
Related reporting
- GitLab CVE-2026-85706 Added to CISA KEVsocradar_blog
- Breaking: GitLab Critical Path Traversal Flaw Exploited in the Wild — Patch Immediatelyorca_security
- 14th September – Threat Intelligence Reportcheckpoint_research
- CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wildrapid7
- [NVD] CVE-2026-85706 (CRITICAL 10.0) — GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that, under certain conditions, an unauthenticated user could have read arbitrary files from the GitLab server due to improper path confinemennvd
- GitLab security advisory (AV26-917)cccs_ca
- CVE-2026-85706 | GitLab CE/EE Repository Commits API Path Traversal Vulnerabilityhorizon3
- CISA Adds One Known Exploited Vulnerability to Catalogcisa_advisories
- [CISA KEV] CVE-2026-85706 — GitLab Community Edition and Enterprise Edition: GitLab Community Edition and Enterprise Edition Path Traversal Vulnerabilitycisa_kev
- GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosurethehackernews