CVE-2026-3160 | GitLab Community Edition/Enterprise Edition up to 18.9.6/18.10.5/18.11.2 confused deputy (Nessus ID 316417)
A vulnerability, which was classified as problematic, was found in GitLab Community Edition and Enterprise Edition up to 18.9.6/18.10.5/18.11.2. The affected element is an unknown function. Executing a manipulation can lead to unintended intermediary.
This vulnerability is registered as CVE-2026-3160. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.