LIVE · cybersecurity feed
Live wire
Acronis warns of actively exploited flaw in its cPanel backup pluginOracle September 2026 Critical Security Patch Update addresses 672 CVEsCVE-2026-76461 · U.S. CISA adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalogHackers target WordPress sites via third-party WooCommerce pluginCVE-2026-51990 · Hackers exploit Tencent app flaw to deploy GrayRabbit malwareCVE-2026-42016 · CISA Adds 5 Exploited Flaws in Artifactory, ScreenConnect, RouterOS to KEVCVE-2026-85102 · Dutch NCSC: Critical Check Point VPN flaws exploitation is imminentAI Enables Mass Generation of Personalized Fraud EmailsCVE-2026-85706 · Critical GitLab Vulnerability Exploited in Internet-Wide ProbesCVE-2025-66516 · Metasploit Wrap Up: This One Goes to Sixteen!
cve record

CVE-2026-87719

CVSS
Severitynone
Weakness
ExploitedNot in CISA KEV

Description

References

← Back to the CVE Tracker

Our coverage of CVE-2026-87719

CVE-2026-85706critical

Critical GitLab Vulnerability Exploited in Internet-Wide Probes

GitLab has released emergency patches for two high-severity vulnerabilities, including one with a critical CVSS score of 10.0 that allows unauthenticated attackers to read any file on a server. A second vulnerability, rated 9.9, enables authenticated users to potentially access sensitive settings and passwords. Security researchers have already observed internet-wide probes targeting the critical file-reading flaw, urging self-managed GitLab users to update immediately.