Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the CI job component resulting in persistent cross site scripting.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-0917.json"