A vulnerability described as problematic has been identified in GitLab up to 19.1.3/19.2.1 . Affected by this issue is some unknown functionality of the component Project Update . Executing a manipulation can lead to improper privilege management. This vulnerability is registered as CVE-2026-16494 . It is possible to launch the attack remotely. No exploit is available. Upgrading the affected component is recommended.