summaryrefslogtreecommitdiff
path: root/config/application.rb
diff options
context:
space:
mode:
authorAndrew Newdigate <andrew@gitlab.com>2019-02-14 09:25:25 +0200
committerAndrew Newdigate <andrew@gitlab.com>2019-02-14 10:46:27 +0200
commite2cc500e4e6b27bd158a84cf7d38768fd28fa642 (patch)
treecc153cd1a83d6d4148c9c411d7583a045cef9782 /config/application.rb
parente927833b941122f25252712bc68b37041b38ba2c (diff)
downloadgitlab-ce-e2cc500e4e6b27bd158a84cf7d38768fd28fa642.tar.gz
Filter note parameters
This change adds `note` to the Rails `filter_parameters` configuration.
Diffstat (limited to 'config/application.rb')
-rw-r--r--config/application.rb2
1 files changed, 1 insertions, 1 deletions
diff --git a/config/application.rb b/config/application.rb
index 92a3d031c63..49e7f5836e4 100644
--- a/config/application.rb
+++ b/config/application.rb
@@ -97,7 +97,7 @@ module Gitlab
#
# NOTE: It is **IMPORTANT** to also update gitlab-workhorse's filter when adding parameters here to not
# introduce another security vulnerability: https://gitlab.com/gitlab-org/gitlab-workhorse/issues/182
- config.filter_parameters += [/token$/, /password/, /secret/, /key$/]
+ config.filter_parameters += [/token$/, /password/, /secret/, /key$/, /^note$/, /^text$/]
config.filter_parameters += %i(
certificate
encrypted_key