Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: CVE-2026-1868: Critical GitLab Gateway Flaw (CVSS 9.9) Allows RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Sun, 08 Feb 2026 07:26:35 +0000
════════════════════════
Tags: #Vulnerability Report #AI Gateway #CVE_2026_1868 #CVSS 9.9 #DevSecOps #Duo Workflow #gitlab #Patch Alert #Remote Code Execution #Self_Hosted #Template Injection
Title: GitLab Patch Alert: High-Severity Web IDE Flaw Exposes Private Repos
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Feb 2026 01:58:57 +0000
════════════════════════
Tags: #Vulnerability Report #CI/CD #CVE_2025_7659 #Denial of Service #DevOps Security #gitlab #graphql #Markdown Vulnerability #Patch Alert #Token Theft #Web IDE
Title: GitLab CI Lint API Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021–39935)
════════════════════════
𐀪 Author: Criminal IP
════════════════════════
Time: Thu, 12 Feb 2026 02:29:13 GMT
════════════════════════
Tags: #attack_surface_management #ssrf #cve_2021_39935 #gitlab #threat_intelligence
Title: How I Built a DevSecOps Pipeline That Catches Vulnerabilities Before They Hit Production
════════════════════════
𐀪 Author: Abed
════════════════════════
Time: Sat, 21 Feb 2026 09:57:42 GMT
════════════════════════
Tags: #sast #gitlab #ci_cd_pipeline #devsecops #application_security
Title: Hired to Hack: North Korean Fake IT Workers Hijack Exec Identities in ‘Contagious Interview’ Scams
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 24 Feb 2026 00:18:13 +0000
════════════════════════
Tags: #Cybercriminals #Contagious Interview #Cyber Security #Fake IT Workers #GitLab Threat Intelligence #identity theft #infosec #Insider Threat #North Korean IT workers #Remote Work Security #social engineering
Title: Code Red: GitLab’s Latest Security Update Patches High-Severity XSS and API DoS Vulnerabilities
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 12 Mar 2026 01:37:30 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_1069 #CVE_2026_1090 #cybersecurity #Denial of Service #DevSecOps #GitLab security #infosec #Patch Alert #vulnerability management #XSS Vulnerability
Title: Security Alert: GitLab Issues Patch for High-Severity Vulnerabilities Across CE and EE
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 09 Apr 2026 02:52:54 +0000
════════════════════════
Tags: #Vulnerability Report #API security #Code Integrity #CVE_2026_5173 #DevOps Security #gitlab #GitLab CE #GitLab EE #graphql #infosec #privilege escalation #security update #terraform
Title: GitLab Security Update: High-Severity Vulnerabilities Patched in April Release
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 22 Apr 2026 12:30:34 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_4922 #CVE_2026_5816 #DevSecOps #gitlab #GraphQL API #infosec #Patch Alert #security update #Session Hijacking #Web IDE
Title: Supply Chains in the Crosshairs: Scan and Simulate Multi-Stage Attacks with Trajan
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Tue, 05 May 2026 08:24:29 +0000
════════════════════════
Tags: #Open Source Tool #Azure DevOps #CI/CD Security #DevSecOps #GitHub Actions #GitLab CI #jenkins #JFrog #Pentesting Tools #supply chain attack #Taint Tracking #Trajan #WebAssembly
Title: GitLab Critical Patch: High-Severity XSS and Unauthenticated DoS Flaws Hit Self-Managed Instances
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 14 May 2026 01:39:34 +0000
════════════════════════
Tags: #Vulnerability Report #CE #CVE_2026_7481 #Cyber Security #DevOps Security #dos #EE #gitlab #GitLab 18.11.3 #GitLab Security Patch #infosec #Patch Alert #XSS