CVE-2020-7973: GitLab

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

GitLab through 12.7.2 allows XSS.

Affected products

  • GitLab GitLab: before 12.5.9 (fixed in 12.5.9); from 12.6.0, before 12.6.6 (fixed in 12.6.6); from 12.7.0, up to and including 12.7.2

Published 2020-02-05. Last modified 2026-06-17.