SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-16553

MEDIUM · CVSS 5.4 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-07-29 · Last synced 2026-08-28

CyberRota Analysis

AI-Generated

GitLab versions prior to 19.0.5, 19.1.3, and 19.2.1 are vulnerable to a medium-severity issue that may expose sensitive information to unintended hosts due to improper handling of upstream requests in virtual registries. Organizations using affected versions should prioritize upgrading to mitigate the risk of information disclosure. This is particularly critical for those handling sensitive data within their GitLab environments.

CVE
CVE-2026-16553
Severity
MEDIUM
CVSS
5.4
EPSS
0.25%
GitLab

Original NVD Description

GitLab has remediated an issue in GitLab EE affecting all versions from 18.8 before 19.0.5, 19.1 before 19.1.3, and 19.2 before 19.2.1 that under certain conditions could have allowed some sensitive information to be disclosed to an unintended host due to improper handling of upstream requests in virtual registries.

Related CVEs

Other vulnerabilities affecting the same vendor(s)