An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9. A specially crafted import file could read files on the server.
Published April 2, 2021.
Gitlab Gitlab