GitLab Warns of Active Exploitation of Critical GraphQL Flaw

A critical GraphQL vulnerability identified as CVE-2026-19478 is currently under active exploitation, allowing unauthenticated attackers to modify or delete public projects on self-managed GitLab installations. Users are urged to patch their systems immediately by upgrading to the latest secure versions.

Edward Kiledjian @ekiledjian