# GitLab Discloses Critical AI Gateway Flaw

GitLab disclosed CVE-2026-90970 on October 2, 2026, a CVSS 9.9 sandbox-escape vulnerability that could let an authenticated Duo Agent Platform user execute arbitrary commands on an affected self-managed AI Gateway. GitLab-hosted services were reported protected, and no in-the-wild exploitation had been reported immediately after disclosure. The issue creates an operational security concern for government contractors and other organizations running self-managed deployments, but the signal identifies no solicitation, award, or direct procurement opportunity.

- Organizations with affected self-managed deployments should upgrade to fixed versions 19.2.4, 19.3.2, or 19.4.1, as applicable.
- Contractors should review user access and network segmentation and check system logs for signs of unauthorized activity.
- Procurement teams and program managers may need to coordinate remediation with IT and security teams where self-managed GitLab AI Gateway services support government work.

**Jurisdictions:** federal
**Industries:** Information Technology
**Topics:** Cybersecurity, Artificial Intelligence
**Published:** October 07, 2026

### Vendors
- GitLab (software publisher)

### Sources
- [GitLab AI Gateway Flaw CVE-2026-90970: CVSS 9.9 [2026]](https://tech-insider.org/gitlab-ai-gateway-cve-2026-90970-duo-agent-2026) - https://tech-insider.org/