---
schema: 1
kind: vulnerability
title: "CVE-2026-4868 (+ five further CVEs) — GitLab 19.0.1 / 18.11.4 / 18.10.7 patch release: Duo AI identity impersonation, unauthenticated project enumeration"
headline: "CVE-2026-4868 (+ five further CVEs) — GitLab 19.0.1 / 18.11.4 / 18.10.7 patch release: Duo AI identity impersonation, unauthenticated project enumeration"
summary: "GitLab shipped patch versions 19.0.1, 18.11.4 and 18.10.7 on 2026-05-27 closing six CVEs."
discovered_at: "2026-05-29T05:00:10Z"
event_date: 2026-05-27
run_id: 2026-05-29-c7f56b00
priority: notable
immediate_action: null
tags:
  - vulnerabilities
  - identity
  - info-disclosure
  - ai-abuse
  - patch-available
regions:
  - europe
  - switzerland
  - global
sectors:
  - public-sector
  - education
  - technology
entities: []
cves:
  - id: CVE-2026-4868
    cvss: "8.2"
    epss: null
    type: info-disclosure
    vector: user-interaction
    auth: post-auth
    status:
      - patch-available
  - id: CVE-2026-6713
    cvss: "5.3"
    epss: null
    type: info-disclosure
    vector: user-interaction
    auth: post-auth
    status:
      - patch-available
  - id: CVE-2026-1402
    cvss: "6.5"
    epss: null
    type: info-disclosure
    vector: user-interaction
    auth: post-auth
    status:
      - patch-available
  - id: CVE-2026-2601
    cvss: "4.3"
    epss: null
    type: info-disclosure
    vector: user-interaction
    auth: post-auth
    status:
      - patch-available
  - id: CVE-2026-5296
    cvss: "4.3"
    epss: null
    type: info-disclosure
    vector: user-interaction
    auth: post-auth
    status:
      - patch-available
  - id: CVE-2026-8716
    cvss: "4.3"
    epss: null
    type: info-disclosure
    vector: user-interaction
    auth: post-auth
    status:
      - patch-available
sources:
  - url: "https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-0-1-released/"
    publisher: GitLab — patch release 19.0.1
    role: primary
  - url: "https://advisories.ncsc.nl/advisory?id=NCSC-2026-0168"
    publisher: NCSC-NL NCSC-2026-0168
    role: corroborating
closed_sources: []
evidence:
  - quote: "GitLab EE versions prior to 18.10.7, 18.11.4, and 19.0.1 contained a vulnerability allowing authenticated users to impersonate others and trigger Duo AI workflows due to improper user identity resolution"
    publisher: NCSC-NL NCSC-2026-0168 CSAF
  - quote: An unauthenticated user may enumerate private project paths via the API
    publisher: GitLab
verification: multi-source
sourcing_note: null
confidence: high
update_of: null
references: []
deep_dive: false
deep_dive_category: null
org_triage: null
watchlist_hit: false
actions: []
migrated_from: briefs/2026-05-29.md
---

[GitLab shipped patch versions 19.0.1, 18.11.4 and 18.10.7 on 2026-05-27](https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-0-1-released/) closing six CVEs. The most severe is `CVE-2026-4868` (CVSS 8.2, CWE-639) — an improper identity-resolution flaw in the GitLab Duo AI integration that allows an authenticated user to impersonate another user when Duo AI workflows are triggered, with the workflow runners executing under the second user's identity. `CVE-2026-6713` (CVSS 5.3) lets an unauthenticated attacker enumerate private projects via an incorrect authorization issue in GitLab's GraphQL WorkItem API. Other CVEs in the batch: `CVE-2026-1402` (CVSS 6.5, Wiki DoS via malformed markup), `CVE-2026-2601` (CVSS 4.3, deployment-data exposure to Developer-role users), `CVE-2026-5296` (CVSS 4.3, Developer-role flow-restriction bypass) and `CVE-2026-8716` (CVSS 4.3, CI cross-reference data exposure). [NCSC-NL advisory NCSC-2026-0168](https://advisories.ncsc.nl/advisory?id=NCSC-2026-0168) rates the batch high; CERT-FR / ANSSI carries CERTFR-2026-AVI-0658 as the FR-CERT corroboration. No exploitation reported.
