A newly disclosed exploit chain in GitLab shows how two long-buried memory-safety flaws in a Ruby JSON parsing library, Oj, could be combined to achieve remote code execution on default GitLab installations, exposing source code, Rails secrets, and internal services. As part of the Open Defense Initiative, Depthfirst researcher Yuhang Wu used the...
🛡️ VERIFIED CYBER INTELLIGENCE ID: #3666544
🛡️ GitLab Vulnerabilities Allow Attackers to Execute Remote Code on Default GitLab Installations
⏱️ vor 2d 15h (25.07.2026 um 19:20 Uhr) 📂 📰 IT Security Nachrichten 📡 Feed 🔗 Quelle: cybersecuritynews.com