CVE-2026-1182 | GitLab Community Edition/Enterprise Edition up to 18.7.5/18.8.5/18.9.1 Public Project improper removal of sensitive information before storage or transfer (EUVD-2026-11501)
A vulnerability described as problematic has been identified in GitLab Community Edition and Enterprise Edition up to 18.7.5/18.8.5/18.9.1. This affects an unknown function of the component Public Project Handler. Such manipulation leads to improper removal of sensitive information before storage or transfer.
This vulnerability is referenced as CVE-2026-1182. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.