Junglewise Threat Intelligence

CVE-2026-4868: GitLab EE authorization bypass in Duo AI workflow runners

CVE-2026-4868 · Severity: high · CVSS 8.2 · Published 2026-05-27

Technologies: GitLab Enterprise Edition. Vendors: GitLab.

Executive brief

GitLab Enterprise Edition contains a security flaw in its Duo AI workflow component, which is used to automate development tasks using artificial intelligence. An authenticated user could exploit this vulnerability to trigger AI workflows that run using the identity and permissions of a different user. This could lead to unauthorized actions being performed or sensitive information being accessed under the guise of a legitimate colleague or administrator.

Technical details

An authorization bypass vulnerability (CWE-639) exists in GitLab EE's Duo AI workflow runners. The issue stems from improper user identity resolution when triggering specific workflows, allowing an authenticated attacker to execute tasks under a different user's context. While the attack requires network access and low-level authentication, the complexity is rated as high because it occurs only under certain conditions. Successful exploitation results in a scope change, granting the attacker the ability to perform actions or access data with the privileges of the targeted user. The vulnerability is remediated in versions 18.10.7, 18.11.4, and 19.0.1.

Affected products

  • GitLab GitLab Enterprise Edition 18.8 to < 18.10.7, 18.11 to < 18.11.4, 19.0 to < 19.0.1

Timeline

  • 2026-05-27: disclosed
  • 2026-05-27: patched: Fixed in versions 18.10.7, 18.11.4, and 19.0.1
  • 2026-05-27: advisory

References

Related threats