CVE-2026-1868: Template injection in GitLab AI Gateway Duo Workflow Service
GitLab patched a vulnerability in the Duo Workflow Service component of the GitLab AI Gateway where crafted Duo Agent Platform Flow definitions caused insecure template expansion of user-supplied data. The flaw could lead to denial of service or code execution on the Gateway and was fixed in AI Gateway versions 18.6.2, 18.7.1 and 18.8.1.
Disclosed 9 February 2026 · Record updated 13 September 2026
Impact
Potential denial of service or remote code execution on the AI Gateway via crafted Duo Agent Platform Flow definitions; affected AI Gateway versions from 18.1.6, 18.2.6, 18.3.1 through 18.6.1, 18.7.0 and 18.8.0.
Our coverage
No articles linked to this incident yet.
Sources
- nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-1868
