Skip to content
GitLabCVE-2026-77801

GitLab: denial of service

Medium6.5CVE-2026-77801 · Published Aug 26, 2026 · updated Aug 31, 2026

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.8 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, could have allowed an authenticated user to cause a denial of service affecting background job processing, due to missing object count limits.

GitLab advisory

Affected versions

PackageAffectedFixed in
GitLab
Product
>= 12.8, < 19.1.719.1.7
>= 19.2, < 19.2.519.2.5
>= 19.3, < 19.3.119.3.1
Details and references

More GitLab advisories

All GitLab
Advisory
GitLab AI Gateway: server-side request forgery
High8.2Aug 27
GitLab: improper authorization
Low3.5Aug 26
GitLab: improper authorization
Medium5.5Aug 26
GitLab: untrusted functionality included
High7.3Aug 26
GitLab has remediated an issue in GitLab EE affecting all versions from 19.1...
Medium4.3Aug 26
GitLab: denial of service
Medium6.5Aug 26

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.