CVE-2026-13210

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that under certain conditions could have allowed an authenticated user to access CI/CD variables outside their intended environment scope due to improper input validation in the environment scope pattern matcher.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-15 18:17

Updated : 2026-09-15 18:17


NVD link : CVE-2026-13210

Mitre link : CVE-2026-13210

CVE.ORG link : CVE-2026-13210


JSON object : View

Products Affected

No product.

CWE
CWE-863

Incorrect Authorization