Gitlab Community Edition version 9.1 is vulnerable to lack of input validation in the IPython notebooks component resulting in persistent cross site scripting.
| Software | From | Fixed in |
|---|---|---|
| gitlab / gitlab | 9.5.10 | 9.5.10.x |
| gitlab / gitlab | 10.1.5 | 10.1.5.x |
| gitlab / gitlab | 10.2.5 | 10.2.5.x |
| gitlab / gitlab | 10.3.3 | 10.3.3.x |