Wire · technology
CISA: Hackers now exploit max severity GitLab flaw in attacks
◆ Sectors
◆ Geography
◆ Source
◆ Verified
Fusion42 · 14 September 2026 · Fusion42 review
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are now actively exploiting a critical GitLab vulnerability (CVE-2026-85706) that allows unauthenticated access to sensitive data. GitLab has issued patches, and federal agencies must comply with patching mandates under BOD 26-04 while all organisations are urged to prioritise remediation.
This Wire brief sits within Fusion42's coverage of Enterprise Software, and 3 sources have reported it between 12 Sep 2026 and 14 Sep 2026.
◆ ◆ The Wire takeaway
You must act fast to patch GitLab systems or face becoming an easy target for attackers exploiting this critical flaw. Federal mandates mean your government contracts could be at risk if you delay updates.
◆ Coverage
3 sources · first reported 12 Sep 2026 · latest 14 Sep 2026
◆ Related on Wire
◆ Topics