CyberNews
← Back to dashboard
OS The Hacker News CVE-2026-19478 ↗

GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure

Aug 21, 2026, 07:04 AM · by The Hacker News

Authoritative NVD/CISA vulnerability data (read-only)

A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr.

The vulnerability in question is CVE-2026-19478 (CVSS score: 9.4), a case of code injection that allows an unauthenticated attacker to modify or delete publicly accessible GitLab projects and rewrite their data under certain conditions without requiring

Source: The Hacker News