🚨 CVE-2026-85706 is a critical GitLab file-read vulnerability already being exploited in the wild.
CrowdSec has tracked 1,022 unique IPs sending matching requests since September 11.
Read the Threat Alert article to get the analysis 👉 www.crowdsec.net/vulntracking...
crowdsec.net
CVE-2026-85706: Upgrading GitLab Won't Save Leaked Secrets
Active exploitation of CVE-2026-85706 (CVSS 10.0) exposes GitLab secrets. Upgrading blocks new requests, but exposed credentials must be rotated immediately.