GitLab released fixes on October 2 for CVE-2026-90970, addressing a critical 9.9 vulnerability in its self-hosted AI Gateway.