What happened
NVD published CVE-2026-19228 (CVSS 8.5, High) on 2026-08-12, confirmed via NVD change-history record; GitLab remediated the issue in its August patch release.
Why it matters
AI usage misattribution in GitLab's AI features has both governance and billing implications — an authenticated user in one namespace can cause AI consumption/costs or audit trails to be falsely attributed to a different customer namespace, undermining AI usage accountability in an enterprise DevOps platform used broadly across the industry.
Attack vector
Improper authorization of identity information supplied by an authenticated user allows AI usage (e.g., GitLab Duo AI feature calls) to be attributed to another namespace, under certain conditions.
Affected systems
GitLab EE 19.1.x < 19.1.4, 19.2.x < 19.2.2
Mitigation
Upgrade to GitLab EE 19.1.4 or 19.2.2 as per GitLab's patch release notes.