CISA has warned that hackers are actively exploiting a maximum-severity GitLab vulnerability that allows unauthenticated attackers to steal credentials and secrets.
Threat actors are actively exploiting a critical path traversal vulnerability in GitLab, allowing unauthenticated users to access arbitrary files on affected servers.