SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-3035

MEDIUM · CVSS 5.5 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-08-26 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

GitLab versions from 11.3 up to 19.1.7, 19.2 up to 19.2.5, and 19.3 up to 19.3.1 are vulnerable, allowing authenticated users with Maintainer permissions to access unauthorized terminals in protected environments due to inadequate authorization checks. This could lead to unauthorized actions within sensitive environments, potentially compromising project integrity. Organizations using affected GitLab versions should prioritize remediation to mitigate risks associated with unauthorized access.

CVE
CVE-2026-3035
Severity
MEDIUM
CVSS
5.5
EPSS
0.23%
GitLab

Original NVD Description

GitLab has remediated an issue in GitLab EE affecting all versions from 11.3 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with project Maintainer permissions could have accessed the terminal of a protected environment they were not authorized to use due to improper authorization checks.

Related CVEs

Other vulnerabilities affecting the same vendor(s)