CVE-2026-2370Patch(gitlab / gitlab)

LOWCVSS 8.8 · HIGH

Signal is active with 5 mentions in latest observed window

Immediate actions

  • Patch gitlab gitlab systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.3 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 affecting Jira Connect installations that could have allowed an authenticated user with minimal workspace permissions to obtain installation credentials and impersonate the GitLab app due to improper authorization checks.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-233

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • gitlab

Threat summary

  • Patch or workaround signal is available
  • 7 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 4 signals
  • Technical details provided in 4 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked at 5 mentions on most recent observed day (2026-03-30)
  • 7 total mentions across 3 days

Affected systems

Vendors
Products
gitlab

1 version affected across 1 product

Deep dive

Activity timeline7 mentions / 3d
01345Mentions · 2026-03-25: 1Mentions · 2026-03-26: 1Mentions · 2026-03-30: 5Patch / Workaround · 2026-03-25: 1Patch / Workaround · 2026-03-30: 3Technical Details · 2026-03-25: 1Technical Details · 2026-03-30: 303-2503-2603-30
Signal classification3 categories
Patch
571.4%
Disclosure
114.3%
General
114.3%
Referenced assets11 URLs
Classification over time
DateTotalLabels
2026-03-251
Patch1
2026-03-261
Disclosure1
2026-03-305
General1Patch4
Full discourse7 posts
  • Gray Hats@the_yellow_fall
    Patch

    GitLab fixes critical flaws (CVE-2026-2370, CVE-2026-3857) allowing app impersonation and AI leaks. Upgrade to 18.10.1, 18.9.3, or 18.8.7 now to stay safe. #GitLab #CyberSecurity #InfoSec #PatchAlert #DevSecOps #AIPrivacy #TechNews #DevOps #SecurityUpdate https://securityonline.info/gitlab-critical-security-update-impersonation-ai-token-leak/ https://t.co/VqhFcVnkDz

    Post summary

    GitLab released a patch for CVE-2026-2370 and CVE-2026-3857, which could enable app impersonation and AI token leaks, and users are urged to upgrade to specific 18.x releases.

    1901961.5K
    10.9K followersView on X
  • dbugs@ptdbugs
    Patch

    Improper Handling of Parameters in GitLab CVE: CVE-2026-2370 PT-Identifier: PT-2026-28096 Vendor: Gitlab Product: GitLab CVSS: 8.1 Credits: Thanks maksyche -> (https://hackerone.com/maksyche) for reporting this vulnerability through our HackerOne bug bounty program Description: GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.3 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 affecting Jira Connect installations that could have allowed an authenticated user with minimal workspace permissions to obtain installation credentials and impersonate the GitLab app due to improper authorization checks. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-2370 • https://hackerone.com/reports/3522829 • https://gitlab.com/gitlab-org/gitlab/-/work_items/589635 • https://about.gitlab.com/releases/2026/03/25/patch-release-gitlab-18-10-1-released/ #dbugs_vuln

    Post summary

    GitLab disclosed and patched CVE‑2026‑2370, which allowed authenticated users with minimal workspace permissions to obtain installation credentials and impersonate the GitLab app; the patch is available for all affected versions.

    030123595
    1.6K followersView on X
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-2370 📊 Severity: 8.1 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-2370 #CVE-2026-2370 #CVE #High #CyberSecurity #InfoSec https://t.co/Y6hOlPkX8l

    Post summary

    The tweet announces CVE‑2026‑2370 with a severity score of 8.1 but provides no additional technical details, PoC, or exploit information, categorizing it as a general vulnerability alert with moderate confidence.

    0001033
    123 followersView on X
  • CosmicBytez@CosmicBytez
    Patch

    Security Advisory: CVE-2026-2370: GitLab Jira Connect Credential Impersonation https://labs.cosmicbytez.ca/security/cve-2026-2370 #Cybersecurity #InfoSec #CVE #PatchNow

    Post summary

    The advisory points to CVE-2026-2370, labeling it a credential impersonation issue in GitLab Jira Connect, but offers no direct patch details or exploit evidence.

    0000052
    1 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-2370 GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.3 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 affecting Jira Connect insta… https://www.cve.org/CVERecord?id=CVE-2026-2370

    Post summary

    The post announces that GitLab has issued a remediation for CVE‑2026‑2370, specifying affected product versions, but it does not provide technical details, a PoC, or evidence of exploitation.

    0000083
    56.9K followersView on X
  • The Hacker Wire@TheHackerWire
    Patch

    🟠 CVE-2026-2370 - High GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.3 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 affecting Jira Connect installations that could have... https://www.thehackerwire.com/vulnerability/CVE-2026-2370/ https://t.co/PpNkWx0zH2

    Post summary

    The notice informs users that GitLab has remediated CVE‑2026‑2370, outlining the vulnerable version ranges and confirming a patch has been applied.

    0000069
    163 followersView on X
  • CERT-PY@CERTpy
    Disclosure

    ⚠️ Vulnerabilidades en productos GitLab ❗ CVE-2026-3857 ❗ CVE-2026-2995 ❗ CVE-2026-2370 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-gitlab-8/ https://t.co/FWg1Jvl80o

    Post summary

    The advisory announces three GitLab CVEs and directs readers to external links for more information, but no technical or mitigation details are provided.

    00000110
    6.6K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
Appgitlabgitlab---
Appgitlabgitlab---
Appgitlabgitlab18.10.0--
Appgitlabgitlab18.10.0--

Explore more