summaryrefslogtreecommitdiff
path: root/CHANGELOG.md
diff options
context:
space:
mode:
authorJarka Kadlecova <jarka@gitlab.com>2017-10-16 19:00:31 +0200
committerJarka Kadlecova <jarka@gitlab.com>2017-10-16 19:00:31 +0200
commit9978ef9884023df12b3fbc5758cf93d166100c80 (patch)
tree8083ff0a14b05286770b011eb4ffcb647f08bec4 /CHANGELOG.md
parent6d274595d268f9461bfb0792790fab6c3aebcc65 (diff)
downloadgitlab-ce-9978ef9884023df12b3fbc5758cf93d166100c80.tar.gz
Update CHANGELOG.md for 10.0.4
[ci skip]
Diffstat (limited to 'CHANGELOG.md')
-rw-r--r--CHANGELOG.md6
1 files changed, 6 insertions, 0 deletions
diff --git a/CHANGELOG.md b/CHANGELOG.md
index 1cd2c79d3af..c857efddb15 100644
--- a/CHANGELOG.md
+++ b/CHANGELOG.md
@@ -2,6 +2,12 @@
documentation](doc/development/changelog.md) for instructions on adding your own
entry.
+## 10.0.4 (2017-10-16)
+
+- [SECURITY] Move project repositories between namespaces when renaming users.
+- [SECURITY] Prevent an open redirect on project pages.
+- [SECURITY] Prevent a persistent XSS in user-provided markup.
+
## 10.0.3 (2017-10-05)
- [FIXED] find_user Users helper method no longer overrides find_user API helper method. !14418