GitLab Patches Critical AI Gateway Vulnerability Allowing Command Execution
CVE-2026-44951 affects self-hosted AI Gateway instances; upgrade required

Key Takeaways
- Critical vulnerability CVE-2026-44951 affects GitLab AI Gateway.
- Allows command execution via Duo Agent Platform access under specific conditions.
- Only self-hosted instances are affected; GitLab SaaS is unaffected.
- Patches released in gateway versions 19.2.4, 19.3.2, and 19.4.1.
Related Security News

GitLab warns of critical RCE vulnerability in AI Gateway service
GitLab has identified a critical remote code execution vulnerability in its AI Gateway service. The flaw requires immediate patching to prevent potential arbitrary command execution on vulnerable instances. Details of active exploitation are currently unreported, but the vendor has urged customers to update to the latest patched version without delay.

CISA Adds Actively Exploited FortiMail Zero-Day to Known Exploited Vulnerabilities Catalog
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-104286 to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerability, affecting Fortinet FortiMail, has a CVSS score of 9.8 and allows unauthenticated attackers to write arbitrary files on the underlying system. CISA's action follows reports of active exploitation in the wild prior to the catalog addition.

