An issue has been discovered in GitLab affecting all versions starting with 13.7. GitLab was vulnerable to a stored XSS in merge request.
Vector
NETWORK
Complexity
MEDIUM
Authentication
SINGLE
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE