1 of 1
Story summary
- CISA added CVE-2026-85706 to its Known Exploited Vulnerabilities catalog.
- GitLab disclosed a maximum-severity path-traversal bug in its repository commits API.
- GitLab assigned the vulnerability a perfect 10.0 CVSS v3.1 score.
- GitLab issued patches for versions 19.3.2, 19.2.6 and 19.1.8 on September 10.
- watchTowr observed probes for CVE-2026-85706 and urged operators to patch or restrict public access.
