A vulnerability labeled as problematic has been found in Red Hat Quay 3. This affects an unknown part of the component GitLab OAuth Validator. Such manipulation of the argument client_id/client_secret leads to use of get request method with sensitive query strings.

This vulnerability is referenced as CVE-2026-10078. It is possible to launch the attack remotely. No exploit is available.