THREAT OPS › Threat News › [NVD] CVE-2026-12910 (MEDIUM 5.4) — GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that under certain conditions could have allowed an authenticated user to bypass SAML SSO sign-in restrictions and authenticate without SSO du
[NVD] CVE-2026-12910 (MEDIUM 5.4) — GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that under certain conditions could have allowed an authenticated user to bypass SAML SSO sign-in restrictions and authenticate without SSO du
CVE-2026-12910 CVSS: 5.4 MEDIUM Published: 2026-09-15T18:17:16.000
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that under certain conditions could have allowed an authenticated user to bypass SAML SSO sign-in restrictions and authenticate without SSO due to missing authentication enforcement checks.
Indicators of compromise
- CVE-2026-12910cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-12910