Real-time CVE monitoring

CVE alerts for
GitLab

CVEye scans every new CVE and notifies your team the moment GitLab is affected — before attackers can exploit it.

Monitor GitLab free →No credit card · 7-day trial

Recent GitLab CVEs

  • CVE-2026-10078LOWCVSS 2.7

    A flaw was found in the Quay config-tool's GitLab OAuth validator. This vulnerability causes sensitive credentials, specifically client_id and client_secret, to be transmitted as plaintext in URL query parameters during POST requests to the GitLab endpoint. This insecure transmission can lead to the disclosure of these credentials in various system logs, such as server access logs, reverse proxy logs, and other monitoring systems. An attacker with access to these logs could potentially obtain these credentials, leading to unauthorized information disclosure.

Never miss a GitLab vulnerability

CVEye monitors GitLab and your entire stack 24/7, sending instant alerts via email, Slack, Discord, or webhook the moment a new CVE is published.

7-day free trial · No credit card required

Also monitor