Persistent XSS in note objects CE See merge request gitlab/gitlabhq!3075
Attach a file by drag & drop or click to upload