News

CVE-2026-90970: Critical GitLab AI Gateway Flaw Fixed

  • Pierluigi Paganini--Securityaffairs.com
  • published date: 2026-10-03 10:43:39 UTC

GitLab fixes critical AI Gateway flaw that could let authenticated Duo users escape a prompt sandbox and execute commands on self-hosted gateways. GitLab has released patches for a critical vulnerability in its AI Gateway, tracked as CVE-2026-90970 (CVSS scor…

Continue Reading at Securityaffairs.com →