summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* Update VERSION to 11.11.8v11.11.811-11-stableGitLab Release Tools Bot2019-08-091-1/+1
* Update CHANGELOG.md for 11.11.8GitLab Release Tools Bot2019-08-093-10/+8
* Merge branch 'pokstad1-11-11-stable-patch-47366' into '11-11-stable'John Skarbek2019-08-092-1/+6
|\
| * Update Gitaly to v1.42.7 for security fixPaul Okstad2019-08-092-1/+6
|/
* Merge branch 'security-11-11-fix-gitlab-api-token-recovery' into '11-11-stable'John Skarbek2019-08-092-1/+6
|\
| * Upgrade pages version to 1.5.1Vladimir Shushlin2019-08-092-1/+6
|/
* Merge branch '11-11-stable-fix-migration-paths' into '11-11-stable'Robert Speicher2019-08-061-1/+2
|\
| * Fix migration-path ci jobVladimir Shushlin2019-08-061-1/+2
|/
* Update browserslist to 4.5.4Robert Speicher2019-08-021-18/+18
* Update VERSION to 11.11.7v11.11.7GitLab Release Tools Bot2019-07-291-1/+1
* Update CHANGELOG.md for 11.11.7GitLab Release Tools Bot2019-07-2910-45/+15
* Add empty changelog for 11.11.6Robert Speicher2019-07-291-1/+4
* Revert "Update CHANGELOG.md for 11.11.6"Robert Speicher2019-07-2910-15/+45
* Update VERSION to 11.11.6v11.11.6GitLab Release Tools Bot2019-07-251-1/+1
* Update CHANGELOG.md for 11.11.6GitLab Release Tools Bot2019-07-2510-45/+15
* Remove invalid Namespace GraphQL type specRobert Speicher2019-07-241-2/+0
* Merge branch 'security-fix-badges-leaked-to-unauthorized-users-11-11' into '1...GitLab Release Tools Bot2019-07-243-31/+101
|\
| * Don't display badges when builds are restrictedFabio Pitino2019-06-273-31/+101
* | Merge branch 'security-60143-patch-additional-xss-issue-11.11' into '11-11-st...GitLab Release Tools Bot2019-07-249-93/+233
|\ \
| * | Extract SanitizeNodeLink and apply to WikiLinkFilterKerri Miller2019-07-089-93/+233
* | | Merge branch 'security-github-ssrf-redirect-11-11' into '11-11-stable'GitLab Release Tools Bot2019-07-246-3/+100
|\ \ \
| * | | Do not allow localhost url redirection in GitHub Integrationmanojmj2019-07-096-3/+100
| |/ /
* | | Merge branch 'security-dns-ssrf-bypass-11-11' into '11-11-stable'GitLab Release Tools Bot2019-07-244-15/+51
|\ \ \
| * | | Fix Server Side Request Forgery mitigation bypassFrancisco Javier López2019-07-044-15/+51
| |/ /
* | | Merge branch 'security-mr-pipeline-permissions-11-11' into '11-11-stable'GitLab Release Tools Bot2019-07-244-6/+102
|\ \ \
| * | | Use MergeRequest#source_project as permissions reference for MergeRequest#all...drew cimino2019-07-054-6/+102
| |/ /
* | | Merge branch 'security-remove-take-trigger-ownership-feature-11-11' into '11-...GitLab Release Tools Bot2019-07-2411-141/+9
|\ \ \
| * | | Drop feature to take ownership of a trigger tokenFabio Pitino2019-07-1011-141/+9
| |/ /
* | | Merge branch 'security-2873-restrict-slash-commands-to-users-who-can-log-in-1...GitLab Release Tools Bot2019-07-245-0/+51
|\ \ \
| * | | Restrict slash commands to users who can log inHordur Freyr Yngvason2019-07-125-0/+51
| |/ /
* | | Merge branch 'security-bvl-filter-mr-params-11-11' into '11-11-stable'GitLab Release Tools Bot2019-07-244-8/+83
|\ \ \
| * | | Filter params in MR build serviceBob Van Landuyt2019-07-174-8/+83
* | | | Merge branch 'security-hide_moved_issue_id-11-11' into '11-11-stable'GitLab Release Tools Bot2019-07-243-1/+44
|\ \ \ \ | |/ / / |/| | |
| * | | Do not show moved issue ids for user not authorizedFelipe Artur2019-07-153-1/+44
| |/ /
* | | Merge branch 'sh-fix-appearance-spec-failure' into 'master'Douglas Barbosa Alexandre2019-07-161-2/+1
|/ /
* | Update CHANGELOG.md for 11.11.5v11.11.5GitLab Release Tools Bot2019-07-011-0/+1
* | Merge branch 'security-support-object-storage-at-file-mover-11-11' into '11-1...Marin Jankovski2019-07-012-54/+126
|\ \
| * | Support object storage at FileMover classOswaldo Ferreira2019-06-302-54/+126
|/ /
* | Update VERSION to 11.11.5GitLab Release Tools Bot2019-06-271-1/+1
* | Update CHANGELOG.md for 11.11.5GitLab Release Tools Bot2019-06-2711-50/+16
|/
* Merge branch 'security-notes-in-private-snippets-11-11' into '11-11-stable'GitLab Release Tools Bot2019-06-265-10/+132
|\
| * Correctly check permissions when creating snippet notesMarkus Koller2019-06-065-10/+132
* | Merge branch 'security-fp-prevent-billion-laughs-attack-11-11' into '11-11-st...GitLab Release Tools Bot2019-06-267-8/+249
|\ \
| * | Prevent Billion Laughs attackFabio Pitino2019-06-077-8/+249
| |/
* | Merge branch 'security-prevent-detection-of-merge-request-template-name-11-11...GitLab Release Tools Bot2019-06-266-32/+130
|\ \
| * | Authorize access before serving project templateLuke Duncalfe2019-06-126-32/+130
* | | Merge branch 'security-11-11-mr-head-pipeline-leak' into '11-11-stable'GitLab Release Tools Bot2019-06-263-1/+33
|\ \ \
| * | | Add CHANGELOG entryMatija Čupić2019-06-121-0/+5
| * | | Gate MR head_pipeline behind read_pipeline abilityMatija Čupić2019-06-122-1/+28
| |/ /
* | | Merge branch 'security-DOS_issue_comments_banzai-11-11' into '11-11-stable'GitLab Release Tools Bot2019-06-263-1/+11
|\ \ \