Home / Oct 03, 2026 / Story
0
#5 BleepingComputer general October 02, 2026 at 16:20 UTC

GitLab warns of critical RCE vulnerability in AI Gateway service

By Sergiu Gatlan

AI Summary

GitLab issued an emergency advisory for a critical RCE vulnerability in its AI Gateway service, fixed in versions 19.2.4, 19.3.2, and 19.4.1. The flaw allows authenticated users with Duo Agent Platform access to execute arbitrary commands on the gateway server, affecting only organizations self-hosting their GitLab AI Gateway.

Relevance score: 86.0/100

# More from October 03