An issue has been discovered in GitLab affecting all versions starting with 12.9. GitLab was vulnerable to a stored XSS if scoped labels were used.
| Software | From | Fixed in |
|---|---|---|
| gitlab / gitlab | 13.10.0 | 13.10.1 |
| gitlab / gitlab | 13.9.0 | 13.9.5 |
| gitlab / gitlab | 12.9 | 13.8.7 |