#5
BleepingComputer
general
October 02, 2026 at 16:20 UTC
GitLab warns of critical RCE vulnerability in AI Gateway service
By Sergiu Gatlan
AI Summary
GitLab issued an emergency advisory for a critical RCE vulnerability in its AI Gateway service, fixed in versions 19.2.4, 19.3.2, and 19.4.1. The flaw allows authenticated users with Duo Agent Platform access to execute arbitrary commands on the gateway server, affecting only organizations self-hosting their GitLab AI Gateway.
Relevance score: 86.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →