Critical GitLab RCE vulnerability chain requires patching
Researchers discovered a critical remote code execution chain in GitLab by combining two Oji parser bugs exploitable via Jupyter notebook diffs. The vulnerability affects authenticated users and urgent patches are being urged.