CVE-2026-3607 | GitLab Community Edition/Enterprise Edition up to 18.9.6/18.10.5/18.11.2 access control check implemented after asset is accessed (Nessus ID 316468)
A vulnerability has been found in GitLab Community Edition and Enterprise Edition up to 18.9.6/18.10.5/18.11.2 and classified as problematic. The impacted element is an unknown function. The manipulation leads to access control check implemented after asset is accessed.
This vulnerability is documented as CVE-2026-3607. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.