Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > CVE-2026-90970
#CVE-2026-90970

GitLab AI Gateway Sandbox Escape Opens Door to Remote Command Execution

5 October 2026  |  dark6  |  Vulnerability

GitLab has patched a CVSS 9.9 sandbox escape in self-hosted AI Gateway deployments. An authenticated Duo Agent Platform user could abuse crafted flow templates to execute commands on...

>> read more