GitLab's AI Gateway Sandbox Escape Ends in Command Execution on Self-Hosted Instances
This story is from 2026-10-11. It is preserved in the archive; the latest stories are on the live feed.
TL;DR GitLab has patched CVE-2026-90970, an issue in the GitLab AI Gateway that could have allowed an authenticated user with Duo Agent Platform access to escape the prompt template sandbox through a specially crafted flow configuration, leading to arbitrary command execution on the gateway. The se…
Read the full story at DEV Community — AI ↗
Timeline · 1 report
- 2026-10-11 14:00 · DEV Community — AI
GitLab's AI Gateway Sandbox Escape Ends in Command Execution on Self-Hosted Instances