Authorization Flaw in GitLab EE for Specific Versions
CVE-2026-4363
What is CVE-2026-4363?
GitLab EE has been identified as having an authorization flaw that could permit an authenticated user to access restricted resources. This issue arises from the improper caching of authorization decisions, which can compromise the security of sensitive data. The vulnerability is present in various versions from 18.1 through 18.10.1, highlighting the importance of keeping software updated to mitigate such risks. Users should ensure they are operating on the latest version to protect against potential unauthorized access. For more details, refer to the official GitLab announcements regarding the issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
GitLab 18.1 < 18.8.7
GitLab 18.9 < 18.9.3
GitLab 18.10 < 18.10.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved