An issue exists in GitLab Community and Enterprise Edition prior to 11.x prior to 11.4.13, 11.5.x prior to 11.5.6, and 11.6.x prior to 11.6.1. It allows SSRF.
gitlab gitlab