GitLab product security update advisory
GitLab has released a security update that addresses multiple vulnerabilities in its products. the targeted vulnerabilities are CVE-2026-6552, CVE-2026-7250, CVE-2026-8589, and CVE-2026-10087. CVE-2026-10087 is a cross-site scripting (XSS) vulnerability in GitLab EE that allows malicious script to be injected into web pages. CVE-2026-6552 is an access control laxity vulnerability in

