Browse articles from Security
Integrate external security scanners into your DevSecOps workflow
Learn how to bring Snyk scan results into the merge request widget by parsing JSON artifacts and leveraging the SARIF file format.
Important information regarding xz-utils (CVE-2024-3094)
Affected software not used for GitLab.com, GitLab Dedicated, or default self-hosted software packages.
GitLab Security Release: 16.10.1, 16.9.3, 16.8.5
Learn more about GitLab Security Release: 16.10.1, 16.9.3, 16.8.5 for GitLab Community Edition (CE) and Enterprise Edition (EE).
We’re combining patch and security releases
This improvement in our release process matches the industry standard and will help GitLab users get information about security and bug fixes sooner.
Coming soon: GitLab dependency firewall
Learn how this new feature will help organizations avoid supply chain software attacks by warning them or blocking the download based on a project's policy.
Simplify your cloud account management for Kubernetes access
In this tutorial, learn how to use the GitLab agent for Kubernetes and its user impersonation features for secure cluster access.
How to implement secret management best practices with GitLab
Insecure secret management practices pose a risk for companies tasked with storage and protection of customer data. Learn how to reduce this risk and increase trust.
New to GitLab and not sure where to start?
Get started guideLearn about what GitLab can do for your team
Talk to an expert