What is CVE-2026-4879?
This issue in GitLab EE allowed an authenticated user with developer-role permissions to view external status check configuration under certain conditions. Versions from 16.0 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 are affected. Users are advised to urgently update to the remediated versions.
Azərbaycanca: Bu CVE, GitLab EE-də autentifikasiya olunmuş developer roluna malik istifadəçilərə müəyyən şərtlər altında xarici status yoxlaması konfiqurasiyasını görməyə imkan verən boşluqdur. 16.0-dan 19.0.6, 19.1.4 və 19.2.2 öncəsi versiyalar təsirlənir. İstifadəçilərə göstərilən yamalı versiyalara təcili yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-200; shared vendor: GitLab
FAQ2
Which GitLab user role is affected by CVE-2026-4879?
This vulnerability affects authenticated users with developer-role permissions.
Which GitLab EE versions are considered safe for CVE-2026-4879?
Versions 19.0.6, 19.1.4, and 19.2.2 are the remediated versions. Releases from 16.0 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 are affected.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.