Mmastodon TechnologyCybersecurity first seen 6 h ago, last 6 h ago, peak #8
GitLab patches critical CVSS 9.9 AI Gateway vulnerability
Original: 🚨 GitLab AI Gateway vulnerability: CVE-2026-90970 GitLab has patched a critical **CVSS 9.9** vulnerability in its AI Gat
GitLab has patched a critical vulnerability, CVE-2026-90970, rated CVSS 9.9, in its AI Gateway. The flaw allows an authenticated attacker to escape the prompt-template sandbox and execute arbitrary commands on self-hosted deployments. Security professionals are urging administrators to apply the update quickly and check whether their installations are affected.
Why now: A near-maximum severity flaw enabling remote command execution on self-hosted GitLab deployments has just been patched, prompting urgent warnings to administrators.
GitLabCVE-2026-90970AI Gateway
Evidence
- 🚨 GitLab AI Gateway vulnerability: CVE-2026-90970 GitLab has patched a critical **CVSS 9.9** vulnerability in its AI Gateway that can allow an authenticated attacker to escape the prompt-template sandbox and execute arbitrary commands on self-hosted deployments. Affected: •… · thecybersecguru@infosec.exchange · 1
API: https://socialmediatrends-api.osmike.com/v1/trends/864419