GitLab CE/EE versions prior to specific updates contained vulnerabilities that allowed unauthenticated users to access tokens or execute arbitrary JavaScript.
Claims
GitLab CE/EE versions prior to specific updates contained vulnerabilities that allowed unauthenticated users to access tokens or execute arbitrary JavaScript.
Parent: Software SecurityEntity: GitLab CE/EEImpact: negativeDate: Apr 22, 2026Target: GitLab CE/EE versions prior to specific updates contained vulnerabilities that allowed unauthenticated users to access tokens or execute arbitrary JavaScript.
Source posts
🟠 CVE-2026-5262 - High (8)
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.1.0 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that under certain conditions could have allowed an unauthenticated user to access tokens in the Storyb...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-5262/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
1 boosts · 0 favs · 0 replies · Apr 22, 2026
#cve#vulnerability#infosec#cybersecurity#security#tenda
🟠 CVE-2026-5816 - High (8)
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.10.4 and 18.11 before 18.11.1 that could have allowed an unauthenticated user to execute arbitrary JavaScript in a user's browser session due to improper pa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-5816/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
1 boosts · 0 favs · 0 replies · Apr 22, 2026
#cve#vulnerability#infosec#cybersecurity#security#tenda