summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* Update VERSION to 12.1.13v12.1.13GitLab Release Tools Bot2019-10-011-1/+1
* Update CHANGELOG.md for 12.1.13GitLab Release Tools Bot2019-10-012-5/+7
* Merge branch 'security-29491-12-1-ce' into '12-1-stable'Marin Jankovski2019-10-017-2/+210
|\
| * EE port: Fix private feature Elasticsearch leakMark Chao2019-10-017-2/+210
|/
* Merge branch 'fix_expired_gpg_key_specs' into 'master'Stan Hu2019-09-302-151/+270
* Update VERSION to 12.1.12v12.1.12GitLab Release Tools Bot2019-09-261-1/+1
* Update CHANGELOG.md for 12.1.12GitLab Release Tools Bot2019-09-2612-58/+17
* Merge branch 'security-gitaly-1-53-4' into '12-1-stable'GitLab Release Tools Bot2019-09-262-1/+6
|\
| * Fix Gitaly SearchBlobs flag RPC injectionPaul Okstad2019-09-242-1/+6
* | Merge branch 'security-sarcila-verify-saml-request-origin-12-1' into '12-1-st...GitLab Release Tools Bot2019-09-2612-40/+303
|\ \
| * | Validate that SAML requests are originated from gitlabSebastian Arcila Valenzuela2019-09-1612-40/+303
* | | Merge branch 'security-xss-mermaid-12-1' into '12-1-stable'GitLab Release Tools Bot2019-09-265-318/+1642
|\ \ \
| * | | Upgrade mermaid to prevent xss attackRajat Jain2019-09-105-318/+1642
* | | | Merge branch 'security-12717-fix-confidential-issue-assignee-visible-to-guest...GitLab Release Tools Bot2019-09-263-1/+47
|\ \ \ \
| * | | | Display only participants that user has permission to seeAlexandru Croitor2019-09-203-1/+47
* | | | | Merge branch 'security-bypass-email-verification-using-salesforce-12-1' into ...GitLab Release Tools Bot2019-09-266-24/+78
|\ \ \ \ \
| * | | | | Bring back unary operatorMałgorzata Ksionek2019-09-111-2/+2
| * | | | | Switch unary operator to more verbose wayMałgorzata Ksionek2019-09-111-2/+2
| * | | | | Bring back unary operatorMałgorzata Ksionek2019-09-111-2/+2
| * | | | | Add checking for email_verified keyMałgorzata Ksionek2019-09-116-24/+78
| | |_|/ / | |/| | |
* | | | | Merge branch 'security-mermaid-block-12-1' into '12-1-stable'GitLab Release Tools Bot2019-09-263-1/+48
|\ \ \ \ \
| * | | | | Only render fixed number of mermaid blocksRajat Jain2019-09-193-1/+48
| |/ / / /
* | | | | Merge branch 'security-12718-project-milestones-disclosed-via-groups-12-1-ce'...GitLab Release Tools Bot2019-09-264-6/+115
|\ \ \ \ \
| * | | | | Hide disabled project milestones in project settings on group levelAlexandru Croitor2019-09-264-6/+115
| | |_|_|/ | |/| | |
* | | | | Merge branch 'security-64938-dont-disclose-path-12-1-ce' into '12-1-stable'GitLab Release Tools Bot2019-09-263-1/+40
|\ \ \ \ \
| * | | | | Redirect user to root path after unsubscribing from private resourceAlexandru Croitor2019-09-203-1/+40
| | |_|/ / | |/| | |
* | | | | Merge branch 'security-12630-private-system-note-disclosed-in-graphql-12-1-ce...GitLab Release Tools Bot2019-09-265-0/+178
|\ \ \ \ \
| * | | | | Add policy check if cross reference system notes are accessibleAlexandru Croitor2019-09-255-0/+178
| | |/ / / | |/| | |
* | | | | Merge branch 'security-fp-stop-jobs-when-blocking-user-12-1' into '12-1-stable'GitLab Release Tools Bot2019-09-265-1/+68
|\ \ \ \ \
| * | | | | Cancel all running CI jobs when user is blockedFabio Pitino2019-09-245-1/+68
| | |/ / / | |/| | |
* | | | | Merge branch 'security-cross-reference-fix-ce-12-1' into '12-1-stable'GitLab Release Tools Bot2019-09-268-34/+284
|\ \ \ \ \ | |_|/ / / |/| | | |
| * | | | Filter not accessible label eventsJan Provaznik2019-09-248-34/+284
| |/ / /
* | | | Merge branch 'ss/fix-sast-failure-on-master-ee' into 'master'Kushal Pandya2019-09-241-1/+1
|/ / /
* | | Update VERSION to 12.1.11v12.1.11GitLab Release Tools Bot2019-09-191-1/+1
* | | Update CHANGELOG.md for 12.1.11GitLab Release Tools Bot2019-09-191-0/+4
* | | Update VERSION to 12.1.10v12.1.1012-1-stable-patch-11GitLab Release Tools Bot2019-09-191-1/+1
* | | Update CHANGELOG.md for 12.1.10GitLab Release Tools Bot2019-09-191-0/+4
* | | Merge branch '12-1-stable-patch-10' into '12-1-stable'John Jarvis2019-09-192-7/+4
|\ \ \ | |/ / |/| |
| * | Merge branch 'sh-fix-captcha-state-pollution-spec' into 'master'12-1-stable-patch-10Mayra Cabrera2019-09-191-7/+1
| * | Merge branch 'sh-fix-no-downtime-upgrades-ce' into '12-1-stable-patch-10'John Jarvis2019-09-191-0/+3
| |\ \ |/ / /
| * | Re-add ignore_column for import columnssh-fix-no-downtime-upgrades-ceStan Hu2019-09-171-0/+3
|/ /
* | Merge remote-tracking branch 'dev/12-1-stable' into 12-1-stableGitLab Release Tools Bot2019-09-113-2/+9
|\ \ | |/ |/|
| * Update VERSION to 12.1.9v12.1.9GitLab Release Tools Bot2019-09-101-1/+1
| * Update CHANGELOG.md for 12.1.9GitLab Release Tools Bot2019-09-102-5/+7
| * Merge branch 'security-12-1-bump-pages' into '12-1-stable'GitLab Release Tools Bot2019-09-102-1/+6
| |\ |/ /
| * Upgrade pages to 1.7.2Vladimir Shushlin2019-09-092-1/+6
|/
* Update VERSION to 12.1.8v12.1.8GitLab Release Tools Bot2019-08-281-1/+1
* Update CHANGELOG.md for 12.1.8GitLab Release Tools Bot2019-08-2822-105/+27
* Merge branch '66641-broken-master-real-http-connections-are-disabled-unregist...Jan Provaznik2019-08-280-0/+0
* Revert "Update CHANGELOG.md for 12.1.7"John Jarvis2019-08-2822-24/+106