A vulnerability marked as problematic has been reported in GitLab Community Edition and Enterprise Edition up to 18.6.5/18.7.3/18.8.3. The affected element is an unknown function of the component Email Address Handler. The manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2026-0595. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.