GitLab vulnerability CVE-2026-19478 carries a CVSS 9.4 rating, letting unauthenticated attackers remotely delete or modify public projects with no login required. An emergency patch released August 17 ...
A critical GitLab flaw lets unauthenticated hackers modify or delete public projects and user data via GraphQL, prompting an ...
Hackers started exploiting CVE-2026-19478, a critical, unauthenticated GitLab vulnerability, shortly after public disclosure.
A lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential ...
GitLab CVE-2026-19478 is under active exploitation, with unauthenticated attacks able to modify or delete public projects ...
Attackers can exploit two security vulnerabilities to manipulate or even delete project data. In a warning message, the developers assure that they have fixed versions 18.11.11, 19.0.8, 19.1.6, and 19 ...
GraphQL is quickly becoming the preferred approach for working with APIs. It is a query language for APIs, and is designed to give users more insight and understanding into the data inside their APIs.