A vulnerability was found in GitLab up to 19.0.5/19.1.3/19.2.1 . It has been rated as problematic . Affected is an unknown function of the component Analytics Dashboard . This manipulation causes cross site scripting. The identification of this vulnerability is CVE-2026-15217 . It is possible to initiate the attack remotely. There is no exploit available. Upgrading the affected component is advised.