GitLab Patches Critical CVSS 10.0 File-Read Vulnerability as Internet Probing Begins
By Kiran Sonawane, Senior DevOps & Cloud EngineerPublished: September 12, 2026 | Last Updated: September 12, 2026 GitLab has released critical security updates for CVE-2026-85706 (CVSS 10.0), a path traversal vulnerability affecting self-managed GitLab installations. Under certain conditions, the flaw could allow an unauthenticated remote attacker to read arbitrary files from a vulnerable GitLab server. … Read more