[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"focus:gitlab-warns-of-critical-rce-vulnerability-in-ai-gateway-service-mutno4qv":3},{"item":4},{"id":5,"title":6,"slug":7,"summary":8,"severity":9,"category":10,"cve_ids":11,"affected_products":14,"action_required":18,"article_ids":19,"ioc_summary":21,"source_urls":22,"status":24,"expires_at":25,"created_at":26,"updated_at":27,"articles":28},"bce32dc3-4e86-4abc-8d33-87795c0dae75","GitLab warns of critical RCE vulnerability in AI Gateway service","gitlab-warns-of-critical-rce-vulnerability-in-ai-gateway-service-mutno4qv","GitLab disclosed CVE-2026-90970, a critical RCE in AI Gateway that lets authenticated users with Duo Agent Platform access break out of prompt sandbox and run arbitrary commands. Self-hosted deployments are vulnerable; cloud instances are already patched. This is the second critical GitLab vuln in weeks, with CVE-2026-85706 already actively exploited.","critical","advisory",[12,13],"CVE-2026-90970","CVE-2026-85706",[15,16,17],"GitLab","GitLab AI Gateway","GitLab Duo","Immediately identify and patch all self-hosted GitLab AI Gateway instances to versions 19.2.4, 19.3.2, or 19.4.1. Hunt for exploitation attempts targeting Duo Agent Platform access and monitor for suspicious command execution in AI Gateway logs.",[20],"27ca76a7-2a76-4f33-b2cb-9816fcb91c26",null,[23],"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Fgitlab-warns-of-critical-rce-vulnerability-in-ai-gateway-service\u002F","active","2026-10-06T10:05:53.072+00:00","2026-10-04T10:05:56.772501+00:00","2026-10-04T10:06:20.305997+00:00",[29],{"id":20,"title":6,"url":23}]