PT-2026-31539 · Gitlab · Gitlab Ce/Ee

Sim4N6

·

Published

2026-04-08

·

Updated

2026-04-13

·

CVE-2026-1101

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions GitLab EE versions 18.2 through 18.8.9, 18.9 through 18.9.5, and 18.10 through 18.10.3
Description The issue involves improper input validation in GraphQL queries, potentially allowing an authenticated user to cause a denial of service to the GitLab instance.
Recommendations Update to GitLab EE version 18.8.9 or later. Update to GitLab EE version 18.9.5 or later. Update to GitLab EE version 18.10.3 or later.

Exploit

Fix

Weakness Enumeration

Related Identifiers

BDU:2026-04883
BIT-GITLAB-2026-1101
CVE-2026-1101

Affected Products

Gitlab Ce/Ee