THREATOPS
THREAT OPSThreat News › CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild

CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild

medrapid7Published 2026-09-14

<p></p><h2 style="direction: ltr;">Overview</h2><p style="direction: ltr;"><span style="font-size: undefined;">On September 10, 2026, GitLab </span><a href="https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-3-2-released/"><span style="font-size: undefined;">published a critical patch release</span></a><span style="font-size: undefined;"> for GitLab Community Edition (CE) and Enterpr

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://www.rapid7.com/blog/post/etr-cve-2026-85706-critical-gitlab-path-traversal-exploited-in-the-wild