chiprook
← Security
SecurityOctober 11, 2026, 21:00

GitLab patches CVE-2026-90970 in AI Gateway rated CVSS 9.9

GitLab released fixes for CVE-2026-90970 in its AI Gateway: an authenticated user with Duo Agent Platform access could escape the prompt template sandbox via a crafted flow configuration and execute arbitrary commands on the gateway. Affected versions are 18.1.6–19.2.3, 19.3.0–19.3.1 and 19.4.0; fixes shipped in 19.2.4, 19.3.2 and 19.4.1. GitLab-hosted gateways were patched in advance, leaving self-managed customers with self-hosted gateways exposed.

GitLab patches CVE-2026-90970 in AI Gateway rated CVSS 9.9
#GitLab
Read next
Security

GitLab patches 11 flaws, including two 9.9-rated RCEs

Security

GitLab EE CVE-2026-87719: critical 9.9 flaw leaks search credentials

Security

CVE-2026-92948: vm2 sandbox escape via node:test rated 9.9

Security

CVE-2026-75682 in Adobe Connect: SQL injection rated 9.9 leads to code execution