FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Gitlab -- Vulnerabilities

Affected packages
19.3.0 <= gitlab-ce < 19.3.1
19.2.0 <= gitlab-ce < 19.2.5
11.3.0 <= gitlab-ce < 19.1.7
19.3.0 <= gitlab-ee < 19.3.1
19.2.0 <= gitlab-ee < 19.2.5
11.3.0 <= gitlab-ee < 19.1.7

Details

VuXML ID 161b1c49-a29b-11f1-a883-2cf05da270f3
Discovery 2026-08-26
Entry 2026-08-28

Gitlab reports:

Inclusion of Functionality from Untrusted Control Sphere issue in Duo Claude AI agent impacts GitLab EE

Denial of Service issue in import pipeline impacts GitLab CE/EE

Denial of Service issue in SCIM API impacts GitLab EE

Improper Access Control issue in protected environments impacts GitLab EE

Authorization Bypass issue in compliance framework assignment impacts GitLab EE

Improper Handling of Untrusted Data issue in Pipeline Execution Policies impacts GitLab EE

Improper Authorization issue in merge request approval rules reset impacts GitLab EE

References

CVE Name CVE-2025-10903
CVE Name CVE-2026-15387
CVE Name CVE-2026-18252
CVE Name CVE-2026-3035
CVE Name CVE-2026-4398
CVE Name CVE-2026-7487
CVE Name CVE-2026-77801
URL https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-3-1-released/?nav=19.3.1