kokumօtօ[verified]@__kokumotoPatch
The post announces that GitLab AI Gateway’s critical XSS vulnerability (CVE-2026-1868, CVSS 9.9) has been fixed, with no PoC or exploitation details provided.
ThreatCluster[verified]@threatclusterPatch
GitLab has released a patch for the critical CVE‑2026‑1868 that enables remote code execution in its self‑hosted AI Gateway; administrators are urged to apply the update immediately.
Karma-X[verified]@Karma_X_IncDisclosure
The text announces a critical GitLab Gateway vulnerability (CVE-2026-1868) with a CVSS score of 9.9 that permits remote code execution, without providing a PoC, exploit code, or patch information.
Hugo | DevOps | Cybersecurity 🇱🇻[verified]@HugoValtersPatch
The notice announces a critical DoS/RCE vulnerability in GitLab AI Gateway (CVE-2026-1868) and urges users to upgrade to the specified patch versions immediately.
PurpleOps[verified]@PurpleOps_ioPatch
The post announces several high‑CVSS vulnerabilities and supplies vendor patches, mitigations, and monitoring guidance.
PurpleOps[verified]@PurpleOps_ioPatch
GitLab’s self‑hosted AI Gateway suffers a critical insecure template expansion flaw that allows authenticated RCE or DoS. Administrators are urged to upgrade immediately to the patched releases 18.6.2, 18.7.1, or 18.8.1.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
The post reports that attackers have exploited a GitLab Jupyter notebook rendering flaw (CVE‑2026‑1868) to run commands as the git user, indicating active use in the wild, but it provides no PoC, exploit code, or patch information.
Komodo Cyber Security[verified]@KomodosecDisclosure
The tweet announces the GitLab Gateway CVE-2026-1868 with a CVSS score of 9.9 and an RCE impact, linking to a detailed security article for further information.