
GitLab Fixes Claude AI Agent Flaw That Could Execute Arbitrary Commands in CI Pipeline
GitLab has released security updates to fix a high-severity vulnerability in its Duo Claude AI agent that could allow authenticated developers to execute arbitrary commands within CI pipeline contexts. The flaw, tracked as CVE-2026-18252, affects GitLab Enterprise Edition installations and carries a CVSS score of 7.3. The company issued patched versions GitLab 19.3.1, 19.2.5, and […]
The post GitLab Fixes Claude AI Agent Flaw That Could Execute Arbitrary Commands in CI Pipeline appeared first on Cyber Security News.