GitLab's 9.4 GraphQL bug went from patch to in-the-wild traffic in about two days
WatchTowr reproduced CVE-2026-19478 from the advisory and patch alone, then caught the first exploitation attempts on its honeypots. Self-managed owners do not get a week to schedule this.
Perspective Coverage
7 publishers- Builder
- Builder 29%
- Operator
- Operator 62%
- Investor
- Investor 9%
Reality
- Evidence72
- Adoption
- Insufficient
- Hype gap+20
- Incentives65
- Confidence70