CVE Details

CVE-2026-85706 GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
Published: 2026-09-11 Product: GitLab Community Edition and Enterprise Edition Due Date: 2026-09-14

GitLab Community Edition and Enterprise Edition contains a path traversal vulnerability that allows an unauthenticated user to read arbitrary files due to an improper path confinement and missing authentication enforcement in the repository commits API.

GitHub PoC

Warning: GitHub PoC repositories are unverified. Some may be fake or contain malware. Use caution and review code before running anything.
  • 0xMarcio/pocindex • ⭐ 1394 • 2024-05-24 • Conf: 95.0%
  • Search 82,000+ public CVE proof-of-concept exploits from GitHub, Nuclei, ExploitDB, Metasploit and Vulhub.
  • guneykabel/cve-2026-85706 • ⭐ 4 • 2026-09-11 • Conf: 95.0%
  • Exploit poc for CVE-2026-85706 an unauthenticated arbitrary file read on Gitlab CE-EE affecting versions: 18.7–19.1.7; 19.2.0–19.2.5; 19.3.0–19.3.1
  • FlowerWitch/CVE-2026-85706_docker_exp • ⭐ 1 • 2026-09-11 • Conf: 95.0%
  • CVE-2026-85706_docker_exp
  • mhtsec/CVE-2026-85706 • ⭐ 1 • 2026-09-11 • Conf: 95.0%
  • GitLab CE/EE unauthenticated path traversal (CVE-2026-85706) - PoC
  • solivaquaant/CVE-2026-85706-PoC • ⭐ 0 • 2026-09-11 • Conf: 95.0%
  • PoC for CVE-2026-85706: GitLab CE/EE unauthenticated arbitrary local file read

FIRST EPSS

EPSS estimates the probability of exploitation in the next 30 days. Higher values indicate higher likelihood of real-world exploitation.

No EPSS data.

Timeline

CVE Stalker KEV MITRE GitHub FIRST (EPSS)

MITRE

No MITRE data.