GitLab Repo Escape Is Now in CISA KEV
CISA says GitLab CVE-2026-85706 is being exploited; the unauthenticated path traversal can expose arbitrary server files, including credentials and secrets. Upgrade self-managed CE/EE to 19.1.8, 19.2.6, or 19.3.2 and review relevant API logs.