Security Advisory
CVE-2020-13267
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
A Stored Cross-Site Scripting vulnerability allowed the execution on Javascript payloads on the Metrics Dashboard in GitLab CE/EE 12.8 and later through 13.0.1