Critical and High-Severity GraphQL CVEs in GitLab: Code Injection and CSRF via One Directive # GitLab # CVE_2026_19478 # CVE_2026_19650 https://www. ox.security/blog/gitlab-graphq l-cve-2026-19478-196

Critical and High-Severity GraphQL CVEs in GitLab: Code Injection and CSRF via One Directive # GitLab # CVE_2026_19478 # CVE_2026_19650 https://www.

4 reportsother

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage