Gitlab · Gitlab Ce/Ee · CVE-2026-92470
**Name of the Vulnerable Software and Affected Versions**
GitLab EE versions 18.7 through 19.2.6
GitLab EE versions 19.3 through 19.3.2
GitLab EE versions 19.4
**Description**
An issue exists where an authenticated user can access sensitive CI/CD variable values through the Duo AI troubleshooting feature. This occurs when viewing debug-mode job traces due to missing authorization checks.
**Recommendations**
Update GitLab EE versions 18.7 through 19.2.6 to version 19.2.7.
Update GitLab EE versions 19.3 through 19.3.2 to version 19.3.3.
Update GitLab EE version 19.4 to version 19.4.1.