Mmastodon TechnologyCybersecurity first seen 4 h ago, last 3 h ago, peak #9
GitLab warns of critical RCE flaw in AI Gateway
Original: ⚠️ CRITICAL: GitLab warns of critical RCE vulnerability in AI Gateway service GitLab disclosed CVE-2026-90970, a critica
GitLab has disclosed CVE-2026-90970, a critical remote code execution vulnerability in its AI Gateway service. The flaw allows authenticated users with Duo Agent Platform access to escape the prompt sandbox and execute arbitrary commands. Self-hosted instances are affected, and security teams are being urged to patch promptly.
Why now: Security teams are scrambling to assess and patch a critical, actively disclosed remote code execution flaw in a widely used DevOps platform.
GitLabCVE-2026-90970AI GatewayDuo Agent Platform
Rank over time, top of the chart is #1. 2 snapshots from 4 h ago to 3 h ago.
Evidence
- ⚠️ CRITICAL: GitLab warns of critical RCE vulnerability in AI Gateway service GitLab disclosed CVE-2026-90970, a critical RCE in AI Gateway that lets authenticated users with Duo Agent Platform access break out of prompt sandbox and run arbitrary commands. Self-hosted… · threatnoir@infosec.exchange · 2
API: https://socialmediatrends-api.osmike.com/v1/trends/972187