A vulnerability described as critical has been identified in GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2. Impacted is an unknown function. Such manipulation leads to server-side request forgery.

This vulnerability is referenced as CVE-2026-7471. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is recommended.