Vulnerability  ·  2026-08-13

GitLab EE authorization flaw allows AI usage misattribution across namespaces

VulnerabilityMedium impactGlobalCVE-2026-19228
NVD published CVE-2026-19228 (CVSS 8.5, High) on 2026-08-12, confirmed via NVD change-history record; GitLab remediated the issue in its August patch release.
AI usage misattribution in GitLab's AI features has both governance and billing implications — an authenticated user in one namespace can cause AI consumption/costs or audit trails to be falsely attributed to a different customer namespace, undermining AI usage accountability in an enterprise DevOps platform used broadly across the industry.
Improper authorization of identity information supplied by an authenticated user allows AI usage (e.g., GitLab Duo AI feature calls) to be attributed to another namespace, under certain conditions.
GitLab EE 19.1.x < 19.1.4, 19.2.x < 19.2.2
Upgrade to GitLab EE 19.1.4 or 19.2.2 as per GitLab's patch release notes.
NVD - CVE-2026-19228GitLab Patch Release 19.2.2
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →