FOFA[verified]@fofabotPatch
The tweet announces GitLab’s patch for CVE‑2026‑5173, outlining an authenticated WebSocket access‑control flaw and linking to a vendor advisory, but provides no PoC, exploit code, or evidence of active exploitation.
Netlas.io[verified]@Netlas_ioDisclosure
The post announces several GitLab CE/EE vulnerabilities, noting potential DoS impacts and code integrity concerns, but does not provide exploitation details, patch information, or evidence of active attacks.
Misbar | مسبار[verified]@MisbarSecPatch
GitLab released urgent security updates (18.10.3, 18.9.5, 18.8.9) to fix CVE-2026-5173 and CVE-2026-1092, which allow DoS, code injection, remote command execution, and information leakage. Updating to these versions mitigates the identified risks.
dbugs[verified]@ptdbugsPatch
The post announces GitLab’s patch for CVE‑2026‑5173, briefly describes the vulnerability’s improper access control flaw, but furnishes no evidence of exploitation, PoC, or false claims.
CERT-PY@CERTpyDisclosure
The tweet announces three CVEs (CVE-2026-5173, CVE-2026-1092, CVE-2025-12664) affecting GitLab products and directs readers to a CERT page for more information, but it does not provide technical details, exploits, or mitigation guidance.
iototsecnews@iototsecnewsPatch
GitLab has issued an emergency patch for several critical vulnerabilities, including CVE-2026-5173 that allows authenticated command execution via WebSocket and CVE-2026-1092/CVE-2025-12664 that enable DoS attacks through malformed JSON. Teams should update immediately.
CVE@CVEnewPatch
The text confirms that GitLab has released a remediation for CVE‑2026‑5173 and provides affected version ranges, but it offers no PoC, exploit code, or evidence of active exploitation.
CCB Alert@CCBalertPatch
GitLab has released a patch that addresses CVE‑2026‑5173, a high‑severity vulnerability with a CVSS score of 8.5.