CVE-2026-7377 | GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 Analytics Dashboard cross site scripting
A vulnerability marked as problematic has been reported in GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2. This issue affects some unknown processing of the component Analytics Dashboard. This manipulation causes cross site scripting.
The identification of this vulnerability is CVE-2026-7377. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.