Gitlab · Gitlab Ce/Ee · CVE-2026-1282
**Name of the Vulnerable Software and Affected Versions**
GitLab CE/EE versions 18.6 through 18.6.5
GitLab CE/EE versions 18.7 through 18.7.3
GitLab CE/EE versions 18.8 through 18.8.3
**Description**
An authenticated user could inject malicious content into project label titles. This issue affects GitLab CE/EE.
**Recommendations**
Update GitLab CE/EE to version 18.6.6 or later.
Update GitLab CE/EE to version 18.7.4 or later.
Update GitLab CE/EE to version 18.8.4 or later.