FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Gitlab -- vulnerabilities

Affected packages
19.0.0 <= gitlab-ce < 19.0.1
18.11.0 <= gitlab-ce < 18.11.4
12.7.0 <= gitlab-ce < 18.10.7
19.0.0 <= gitlab-ee < 19.0.1
18.11.0 <= gitlab-ee < 18.11.4
12.7.0 <= gitlab-ee < 18.10.7

Details

VuXML ID 9b94eb13-6159-11f1-be36-2cf05da270f3
Discovery 2026-05-27
Entry 2026-06-06

Gitlab reports:

Improper Access Control issue in Duo AI workflow runners impacts GitLab EE

Denial of Service issue in Wiki impacts GitLab CE/EE

Incorrect Authorization issue in GraphQL WorkItem API impacts GitLab CE/EE

Improper Authorization issue in Duo Workflows API impacts GitLab EE

Missing Authorization issue in Operations impacts GitLab EE

Incorrect Name Resolution issue in Pipelines impacts GitLab CE/EE

Incorrect Authorization issue in certain authentication endpoints impacts GitLab CE/EE

References

CVE Name CVE-2026-1402
CVE Name CVE-2026-2601
CVE Name CVE-2026-2710
CVE Name CVE-2026-4868
CVE Name CVE-2026-5296
CVE Name CVE-2026-6713
CVE Name CVE-2026-8716
URL https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-0-1-released/