Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects
The Hacker News 17.08.2026 21:03
GitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software that, under certain conditions, could allow an unauthenticated attacker to remotely modify or delete public projects and user data.
The flaw, tracked as CVE-2026-19478, has been rated Critical by GitLab and assigned a CVSS score of 9.4.
Released on
App-Baukasten AppYourself: Update stopft Sicherheitslücke
Heise Security 17.08.2026 14:36
Mit AppYourself können auch Nicht-Programmierer Business-Apps erstellen. Ein Update schließt eine Sicherheitslücke in der Software.
Frankreich untersucht Diebstahl von Steuerdaten von 678.000 Betroffenen
Heise Security 17.08.2026 12:45
Französische Staatsanwälte untersuchen einen „beispiellosen“ Cyberangriff, bei dem Steuerdaten von 678.000 Nutzern entwendet wurden.
Schadcode-Sicherheitslücken bedrohen PostgreSQL
Heise Security 17.08.2026 10:21
In aktuellen Versionen haben die PostgreSQL-Entwickler mehrere Sicherheitslücken geschlossen. Für einen Versionsstrang läuft bald der Support aus.
Zahlreiche Crash-Lücken in Wireshark geschlossen
Heise Security 17.08.2026 08:15
In der aktuellen Wireshark-Version haben sich die Entwickler um mehrere Sicherheitslücken gekümmert.
SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch
The Hacker News 15.08.2026 08:38
A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts.
The vulnerability, tracked as CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It relates to an instance of insufficient authorization checks and input validation.
"SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit