CVE-2026-4523 | GitLab up to 19.2.6/19.3.2/19.4.0 GraphQL API improper authorization

SecurityVulns

A vulnerability, which was classified as problematic, has been found in GitLab up to 19.2.6/19.3.2/19.4.0. Impacted is an unknown function of the component GraphQL API. The manipulation leads to improper authorization.

This vulnerability is documented as CVE-2026-4523. The attack can be initiated remotely. There is not any exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More