GitLab Fixes Claude AI Agent Flaw That Could Execute Arbitrary Commands in CI Pipeline

GitLab has released security updates to fix a high-severity vulnerability in its Duo Claude AI agent that could allow authenticated developers to execute arbitrary commands within CI pipeline contexts. The flaw, tracked as CVE-2026-18252, affects GitLab Enterprise Edition installations and carries a CVSS score of 7.3. The company issued patched versions GitLab 19.3.1, 19.2.5, and […]

This article has been indexed from Cyber Security News

Read the original article: