A vulnerability described as problematic has been identified in GitLab Enterprise Edition up to 18.6.5/18.7.3/18.8.3. The impacted element is an unknown function of the component API Endpoint. The manipulation results in authorization bypass.

This vulnerability is reported as CVE-2026-1080. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.