A vulnerability described as critical has been identified in GitLab Enterprise Edition up to 18.11.5/19.0.2/19.1.0. This affects an unknown part. Executing a manipulation can lead to authorization bypass.
This vulnerability is tracked as CVE-2026-5309. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.