CVE-2020-13337: GitLab
Medium severity, CVSS 4.8. EPSS: 0.8% chance of exploitation in the next 30 days.
An issue has been discovered in GitLab affecting versions from 12.10 to 12.10.12 that allowed for a stored XSS payload to be added as a group name.
Affected products
- GitLab GitLab: from 12.10.0, before 12.10.12 (fixed in 12.10.12)
Published 2020-10-02. Last modified 2026-06-17.