Loading market data...
← Back to CVE feed

CVE-2026-15387

MEDIUM CVSS 4.3 View on NVD ↗

Description

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with developer-role permissions could have influenced the execution environment of Pipeline Execution Policy enforcement jobs, due to improper handling of job dependencies.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Published: Aug 26, 2026 14:17 UTC Modified: Aug 26, 2026 16:16 UTC