Security · October 7, 2026
Also published in Indonesia, Deutsch, Español, Français, Nederlands, Norsk, Polski, ไทย, العربية, Português (Brasil)
GitLab AI Gateway Vulnerability Discovered
GitLab has released a fix for a serious vulnerability identified in the GitLab AI Gateway. The company is urging users of self-hosted environments to update promptly.
The vulnerability, identified as CVE-2026-90970, poses a risk of arbitrary command execution within the GitLab AI Gateway. It exists in the processing of custom flow prompt templates. Authenticated users who have access to the Duo Agent Platform can exploit this vulnerability using crafted flow configurations to bypass the sandbox under certain conditions and execute arbitrary commands.
The vulnerability has a Common Vulnerability Scoring System (CVSSv3.1) base score of 9.9, classifying its severity as Critical.
GitLab has released updated versions, including GitLab AI Gateway 19.4.1, 19.3.2, and 19.2.4, and is requesting users to apply these updates. The company indicates that patches have already been applied to the AI Gateway hosted by them.