CVE-2026-84739

LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

0.0/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Peaked 1d ago at 1 mentions (2026-09-23); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-09-23: 1Mentions · 2026-09-24: 109-2309-24
Referenced assets3 URLs
Full discourse2 posts
  • Dark Web Intelligence@DailyDarkWeb

    🚨 GITLAB CRITICAL PATCH: AUTH RCE VIA REGEX PARSER (CVE-2026-89078 / CVE-2026-93577) GitLab released Critical patch versions 19.4.1, 19.3.3, and 19.2.7 on September 23, 2026 for CE/EE. Lead Critical issues (both CVSS 9.9): * CVE-2026-89078 — authenticated remote code execution via a double-free in the regular-expression parser when handling a crafted regex in CI/CD configuration * CVE-2026-93577 — authenticated remote code execution via an integer overflow in the regular-expression compiler under the same class of crafted CI/CD regex input Also in the same release: High XSS in the merge request diff viewer (CVE-2026-84739) plus several Medium/Low authz issues. Impacted: GitLab CE/EE from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 (XSS reach extends further back on some issues). http://GitLab.com is already patched; Dedicated customers need no action. Self-managed installs should upgrade immediately. ⚠️ Analyst Note: This is an official GitLab Critical patch release, not a dark-web leak claim and not a CISA KEV add as of our check. Both Critical RCEs require an authenticated user. No in-the-wild exploitation is claimed in the vendor notes reviewed here. Credit on the Critical regex issues: joaxcar via HackerOne. Primary: https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-4-1-released/ #DDW #DarkWeb #GitLab #CVE202689078 #CVE202693577 #RCE #ThreatIntelligence #CyberSecurity

    08133156.3K
    204.9K followersView on X
  • bearstech@bearstech

    Toutes nos instances GitLab sont à jour en version 19.4.1 depuis hier soir à 22h. Il faut mettre à jour rapidement : cette nouvelle version corrige 2 CVE évaluées à 9,9 (CVE-2026-93577 et CVE-2026-84739). En savoir plus sur nos offres 👇 https://gitlab-saas.bearstech.com/

    001521.6K
    18.9K followersView on X

Explore more