An issue has been discovered in GitLab affecting all versions starting with 11.8. GitLab was vulnerable to a stored XSS in the epics page, which could be exploited with user interactions.
| Software | From | Fixed in |
|---|---|---|
| gitlab / gitlab | 13.8.0 | 13.8.2 |
| gitlab / gitlab | 13.7.0 | 13.7.6 |
| gitlab / gitlab | 11.8 | 13.6.6 |