GitLab Critical CVE-2026-85706 (CVSS 10.0) Actively Exploited in the Wild
A path-traversal vulnerability in GitLab CE/EE (versions 18.7+) allows unauthenticated attackers to read arbitrary files from self-managed servers. Patches released Sept 10; CISA added to Known Exploited Vulnerabilities catalog with reported in-the-wild exploitation.