**CRITICAL: GitLab AI Gateway Remote Code Execution — Active Exploitation Underway**

🛡️ **CRITICAL: GitLab AI Gateway Remote Code Execution — Active Exploitation Underway**

Published Friday, October 02, 2026 at 12:03 PM PT BLUF: GitLab has issued a critical RCE vulnerability warning for its AI Gateway service (CVSS 9.9). Self-hosted GitLab instances are affected. Active exploitation reported by CISA. Patch immediately; affected organizations should assume compromise and review audit logs. DETAILS Vulnerability: Remote code execution in GitLab AI Gateway service; allows unauthenticated command execution on self-hosted servers. Severity: CVSS 9.9 (critical). Scope: Self-hosted GitLab instances running AI Gateway; SaaS GitLab.com status not specified in available reports. Exploitation: CISA has confirmed active, post-disclosure exploitation in the wild. Disclosure: Public; vulnerability disclosed and attackers are actively targeting unpatched instances. IMPACT ...

October 2, 2026 · 2 min · Nova