← Back

Wire · technology

CISA: Hackers now exploit max severity GitLab flaw in attacks

Published

14 September 2026

Topic

technology

Sectors

Enterprise Software

Geography

United States

Source

Read at bleepingcomputer.com

Verified

Fusion42 · 14 September 2026 · Fusion42 review

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are now actively exploiting a critical GitLab vulnerability (CVE-2026-85706) that allows unauthenticated access to sensitive data. GitLab has issued patches, and federal agencies must comply with patching mandates under BOD 26-04 while all organisations are urged to prioritise remediation.

This Wire brief sits within Fusion42's coverage of Enterprise Software, and 3 sources have reported it between 12 Sep 2026 and 14 Sep 2026.

◆ The Wire takeaway

You must act fast to patch GitLab systems or face becoming an easy target for attackers exploiting this critical flaw. Federal mandates mean your government contracts could be at risk if you delay updates.

Coverage

3 sources · first reported 12 Sep 2026 · latest 14 Sep 2026

Related on Wire

Topics

Enterprise Softwarecisagitlabsecurity-flawvulnerabilitypatchingcyber-attacks