OverviewOn September 10, 2026, GitLab published a critical patch release for GitLab Community Edition (CE) and Enterprise Edition (EE). The release addresses CVE-2026-85706, a critical path traversal vulnerability (CWE-22) in the repository commits API with a CVSSv3.1 score of 10.0.
CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild
About this summary. This is a short, independently written summary of an article first published by Rapid7. Cyber Security News did not report or verify the underlying story. Read the original: https://www.rapid7.com/blog/post/etr-cve-2026-85706-critical-gitlab-path-traversal-exploited-in-the-wild
Source attribution: headline and facts are from Rapid7 (rapid7.com). Summary method: excerpt of the source description. See our source attribution policy and corrections policy.
