What is CVE-2026-15077?
CVE-2026-15077 is a vulnerability in GitLab EE that could allow an authenticated user to access information from unauthorized projects under certain conditions. It affects versions from 19.1 before 19.1.3 and 19.2 before 19.2.1; users should upgrade to the remediated versions immediately.
Azərbaycanca: CVE-2026-15077 GitLab Enterprise Edition-da autentifikasiya olunmuş istifadəçiyə müəyyən şərtlər daxilində icazəsiz layihələrdən məlumat əldə etməyə imkan verən boşluqdur. Versiyalar 19.1-dən 19.1.3-ə qədər və 19.2-dən 19.2.1-ə qədər təsirlənir; istifadəçilər dərhal yamalanmış versiyalara yüksəlməlidir.
Related CVEs
link basis: same weakness class CWE-200; shared vendor: GitLab
FAQ2
Which GitLab versions are affected by CVE-2026-15077?
This vulnerability affects GitLab Enterprise Edition versions from 19.1 before 19.1.3 and 19.2 before 19.2.1.
How can I protect against CVE-2026-15077?
GitLab users should upgrade to the remediated versions (19.1.3 or 19.2.1) immediately.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.