Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade to version 18.5.0 or above
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 04 Feb 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:* cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:* |
Mon, 02 Feb 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 02 Feb 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been discovered in GitLab CE/EE affecting all versions starting with 16.8 before 18.5.0 that could have allowed unauthorized edits to merge request approval rules under certain conditions. | |
| Title | Missing Authorization in GitLab | |
| First Time appeared |
Gitlab
Gitlab gitlab |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Gitlab
Gitlab gitlab |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2026-02-02T13:24:44.683Z
Reserved: 2026-02-02T09:04:33.310Z
Link: CVE-2026-1751
Updated: 2026-02-02T13:24:30.874Z
Status : Analyzed
Published: 2026-02-02T10:16:06.693
Modified: 2026-02-04T14:34:06.983
Link: CVE-2026-1751
No data.
OpenCVE Enrichment
Updated: 2026-04-18T00:45:32Z