# GitLab patches RCE flaw in AI Gateway service

> Source: <https://osintsights.com/gitlab-patches-rce-flaw-in-ai-gateway-service>
> Published: 2026-10-02 16:50:57+00:00

GitLab has patched a critical remote-code-execution flaw in its AI Gateway service, known as CVE-2026-90970, which could have allowed attackers to run arbitrary commands on vulnerable instances. Even users with basic privileges could exploit this vulnerability, making it essential to apply the patch ASAP.
