summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
...
| * | | | | Merge branch 'security-fix-xss-in-label-namespace-12-5' into '12-5-stable'GitLab Release Tools Bot2019-11-263-1/+15
| |\ \ \ \ \
| | * | | | | Escape namespace in label referencesHeinrich Lee Yu2019-11-253-1/+15
| |/ / / / / |/| | | | |
| * | | | | Merge branch 'security-28802-respect-fork-parent-visibility-12-5' into '12-5-...GitLab Release Tools Bot2019-11-2610-27/+164
| |\ \ \ \ \
| | * | | | | Check permissions before showing a forked project's sourceNick Thomas2019-11-2510-27/+164
| |/ / / / / |/| | | | |
| * | | | | Merge branch 'security-exclude_ids_attribute_cleaning-12-5-ce' into '12-5-sta...GitLab Release Tools Bot2019-11-263-2/+10
| |\ \ \ \ \ |/ / / / / /
| * | | | | Spec to ensure `_ids` are cleaned by ImportExport::AttributeCleanerImre Farkas2019-11-262-1/+9
| * | | | | Ensure attributes that end in `_ids` are cleanedDJ Mountney2019-11-261-1/+1
|/ / / / /
* | | | | Add latest changes from gitlab-org/gitlab@12-5-stable-eeGitLab Bot2019-11-2210-39/+38
|/ / / /
* | | | Update VERSION to 12.5.0v12.5.0GitLab Release Tools Bot2019-11-221-1/+1
* | | | Update CHANGELOG.md for 12.5.0GitLab Release Tools Bot2019-11-221-0/+1
* | | | Add latest changes from gitlab-org/gitlab@12-5-stable-eeGitLab Bot2019-11-22330-1639/+438
|/ / /
* | | Add latest changes from gitlab-org/gitlab@12-5-stable-eeGitLab Bot2019-11-201-1/+1
* | | Add latest changes from gitlab-org/gitlab@12-5-stable-eeGitLab Bot2019-11-202-2/+2
|/ /
* | Add latest changes from gitlab-org/gitlab@12-5-stable-eeGitLab Bot2019-11-201-1/+1
* | Add latest changes from gitlab-org/gitlab@12-5-stable-eeGitLab Bot2019-11-202-1/+6
|/
* Add latest changes from gitlab-org/gitlab@12-5-stable-eeGitLab Bot2019-11-193-1/+1
* Update VERSION to 12.5.0-rc42v12.5.0-rc42GitLab Release Tools Bot2019-11-191-1/+1
* Add latest changes from gitlab-org/gitlab@12-5-stable-eeGitLab Bot2019-11-193225-25748/+93706
* Update VERSION to 12.4.3v12.4.3GitLab Release Tools Bot2019-11-181-1/+1
* Update CHANGELOG.md for 12.4.3GitLab Release Tools Bot2019-11-181-0/+4
* Add latest changes from gitlab-org/gitlab@12-4-stable-eeGitLab Bot2019-11-153-3/+11
* Update VERSION to 12.4.2v12.4.2GitLab Release Tools Bot2019-11-041-1/+1
* Update CHANGELOG.md for 12.4.2GitLab Release Tools Bot2019-11-0413-61/+21
* Add latest changes from gitlab-org/gitlab@12-4-stable-eeGitLab Bot2019-11-0450-63/+406
* Merge remote-tracking branch 'dev/12-4-stable' into 12-4-stableGitLab Release Tools Bot2019-10-3075-146/+1196
|\
| * Update VERSION to 12.4.1v12.4.1GitLab Release Tools Bot2019-10-281-1/+1
| * Update CHANGELOG.md for 12.4.1GitLab Release Tools Bot2019-10-2813-58/+18
| * Merge branch 'security-mask-sentry-token-12-4-ce' into '12-4-stable'GitLab Release Tools Bot2019-10-256-4/+51
| |\
| | * Mask Sentry auth tokenRyan Cobb2019-10-246-4/+51
| |/ |/|
| * Merge branch 'security-remove-leaky-401-responses-12.4' into '12-4-stable'GitLab Release Tools Bot2019-10-2512-17/+41
| |\
| | * Avoid #authenticate_user! in #route_not_foundKerri Miller2019-10-2212-17/+41
| |/ |/|
| * Merge branch 'security-id-fix-disclosure-of-private-repo-names-12-4' into '12...GitLab Release Tools Bot2019-10-253-1/+48
| |\
| | * Return 404 on LFS request if project doesn't existIgor Drozdov2019-10-253-1/+48
| |/
| * Merge branch 'security-bvl-validate-force-remove-branch-on-mrs-12-4-ce' into ...GitLab Release Tools Bot2019-10-2414-15/+191
| |\
| | * Only assign merge params when allowedBob Van Landuyt2019-10-2314-15/+191
| |/ |/|
| * Merge branch 'security-wiki-rdoc-content-12-4-ce' into '12-4-stable'GitLab Release Tools Bot2019-10-246-44/+74
| |\
| | * Pass all wiki markup formats through pipelinesLuke Duncalfe2019-10-236-44/+74
| |/ |/|
| * Merge branch 'security-developer-transfer-project-12-4' into '12-4-stable'GitLab Release Tools Bot2019-10-248-2/+128
| |\
| | * Require maintainer permission to transfer projectsmanojmj2019-10-238-2/+128
| |/ |/|
| * Merge branch 'security-open-redirect-internalredirect-12-4' into '12-4-stable'GitLab Release Tools Bot2019-10-243-2/+8
| |\
| | * Use the '\A' and '\z' regex anchors in `InternalRedirect` to mitigate an Open...Joern Schneeweisz2019-10-223-2/+8
| |/ |/|
| * Merge branch 'security-2914-labels-visible-despite-no-access-to-issues-reposi...GitLab Release Tools Bot2019-10-246-8/+102
| |\
| | * Fix labels finder to filter issuablesEugenia Grieff2019-10-226-8/+102
| |/ |/|
| * Merge branch 'security-2920-fix-notes-with-label-cross-reference-12-4' into '...GitLab Release Tools Bot2019-10-244-1/+66
| |\
| | * Add milestone and label note types to cross refsEugenia Grieff2019-10-244-1/+66
| |/ |/|
| * Merge branch 'security-64519-circular-graphql-queries-12-4' into '12-4-stable'GitLab Release Tools Bot2019-10-248-12/+254
| |\
| | * Tweak test to insulate against magic number changescharlieablett2019-10-231-0/+1
| | * Allow tests to ignore recursioncharlieablett2019-10-232-1/+10
| | * Check for recursion and fail if too recursivecharlieablett2019-10-238-12/+244
| |/ |/|
| * Merge branch 'security-33689-post-filter-search-results-ce-12-4' into '12-4-s...GitLab Release Tools Bot2019-10-249-9/+44
| |\