Tech Times on MSN
GitLab emergency patch: Third GraphQL flaw of 2026 lets unauthenticated attackers delete projects
GitLab vulnerability CVE-2026-19478 carries a CVSS 9.4 rating, letting unauthenticated attackers remotely delete or modify public projects with no login required. An emergency patch released August 17 ...
A critical GitLab flaw lets unauthenticated hackers modify or delete public projects and user data via GraphQL, prompting an ...
Hackers started exploiting CVE-2026-19478, a critical, unauthenticated GitLab vulnerability, shortly after public disclosure.
A lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential ...
GitLab CVE-2026-19478 is under active exploitation, with unauthenticated attacks able to modify or delete public projects ...
Attackers can exploit two security vulnerabilities to manipulate or even delete project data. In a warning message, the developers assure that they have fixed versions 18.11.11, 19.0.8, 19.1.6, and 19 ...
GraphQL is quickly becoming the preferred approach for working with APIs. It is a query language for APIs, and is designed to give users more insight and understanding into the data inside their APIs.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results