An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 10.5.8, 10.6.x before 10.6.5, and 10.7.x before 10.7.2. The Move Issue feature contained a persistent XSS vulnerability.
| Software | From | Fixed in |
|---|---|---|
| gitlab / gitlab | 10.6.0 | 10.6.5 |
| gitlab / gitlab | 10.7.0 | 10.7.2 |
| gitlab / gitlab | - | 10.5.8 |