GitLab: known exploited vulnerabilities
Entries5No. 41
Ransomware-linked1
Products4
Latest2026-09-11
Added per year
By product
2
1
1
1
Entries
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2026-85706 | GitLab Community Edition and Enterprise Edition | 2026-09-11 | 92.9% | Unknown |
| CVE-2021-22175 | GitLab GitLab | 2026-02-18 | 53.3% | Unknown |
| CVE-2021-39935 | GitLab Community and Enterprise Editions | 2026-02-03 | 36.1% | Unknown |
| CVE-2023-7028 | GitLab GitLab CE/EE | 2024-05-01 | 94.6% | Unknown |
| CVE-2021-22205 | GitLab Community and Enterprise Editions | 2021-11-03 | 99.7% | Known |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
CISA KEV lists 5 GitLab vulnerabilities (No. 41 of 288 vendors).