summaryrefslogtreecommitdiff
path: root/changelogs
Commit message (Expand)AuthorAgeFilesLines
* Update CHANGELOG.md for 11.7.9GitLab Release Tools Bot2019-03-277-35/+0
* Revert "Update CHANGELOG.md for 11.7.8"Robert Speicher2019-03-277-0/+35
* Update CHANGELOG.md for 11.7.8GitLab Release Tools Bot2019-03-267-35/+0
* Merge branch 'security-55503-fix-pdf-js-11-7' into '11-7-stable'Yorick Peterse2019-03-261-0/+5
|\
| * Updated PDF.js to 2.0.943Natalia Tepluhina2019-03-201-0/+5
* | Merge branch 'security-mass-assignment-on-project-update-11-7' into '11-7-sta...Yorick Peterse2019-03-261-0/+5
|\ \
| * | Add cr remarksMałgorzata Ksionek2019-03-251-1/+1
| * | Disallow changing namespace of a project in update methodMałgorzata Ksionek2019-03-211-0/+5
* | | Merge branch 'security-use-untrusted-regexp-11-7' into '11-7-stable'GitLab Release Tools Bot2019-03-261-0/+5
|\ \ \
| * | | Make CI refs matching to to use UntrustedRegexpKamil Trzciński2019-03-151-0/+5
* | | | Merge branch 'security-exif-migration-11-7' into '11-7-stable'GitLab Release Tools Bot2019-03-261-0/+5
|\ \ \ \
| * | | | Rake task for removing exif from uploadsJan Provaznik2019-03-251-0/+5
| |/ / /
* | | | Merge branch 'security-2819-xss-resolve-conflicts-branch-name-11-7' into '11-...GitLab Release Tools Bot2019-03-261-0/+5
|\ \ \ \
| * | | | Fix XSS in resolve conflicts formPaul Slaughter2019-03-041-0/+5
| |/ / /
* | | | Merge branch 'security-56224-11-7' into '11-7-stable'GitLab Release Tools Bot2019-03-261-0/+5
|\ \ \ \
| * | | | Hide related branches when user does not have permissionMark Chao2019-03-201-0/+5
| | |_|/ | |/| |
* | | | Disallow guest users from accessing ReleasesShinya Maeda2019-03-261-0/+5
|/ / /
* | | Update CHANGELOG.md for 11.7.7GitLab Release Tools Bot2019-03-192-10/+0
* | | Only return `commands_changes` used in frontendHeinrich Lee Yu2019-03-181-0/+5
|/ /
* | Secure vulerability and add specsMałgorzata Ksionek2019-02-281-0/+5
|/
* Update CHANGELOG.md for 11.7.6GitLab Release Tools Bot2019-02-2822-112/+0
* Display only informaton visible to current userJarka Košanová2019-02-271-0/+5
* Display the correct number of MRs a user has access toIgor Drozdov2019-02-271-0/+5
* Merge branch 'security-2818_filter_impersonated_sessions-11-7' into '11-7-sta...Yorick Peterse2019-02-271-0/+6
|\
| * Remove ability to revoke active sessionImre Farkas2019-02-271-0/+6
* | Merge branch 'security-id-restricted-access-to-private-repo-11-7' into '11-7-...Yorick Peterse2019-02-271-0/+5
|\ \
| * | Forbid creating discussions for users with restricted accessIgor Drozdov2019-02-071-0/+5
| |/
* | Merge branch '11-7-security-2773-milestones-fix' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Check issue milestone availabilityJarka Košanová2019-02-131-0/+5
| |/
* | Merge branch 'security-tags-oracle-11-7' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Prevent Releases links API to leak tag existanceAlessio Caiazza2019-02-131-0/+5
| |/
* | Merge branch 'security-2798-fix-boards-policy-11-7' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Disable board policies when issues are disabledHeinrich Lee Yu2019-02-141-0/+5
| |/
* | Merge branch '11-7-security-2797-milestone-mrs' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Show only MRs visible to user on milestone detailJarka Košanová2019-02-141-0/+5
| |/
* | Merge branch 'security-commit-private-related-mr-11-7' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Don't allow non-members to see private related MRsPatrick Bajao2019-02-151-0/+5
| |/
* | Merge branch 'security-kubernetes-google-login-csrf-11-7' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Validate session key when authorizing with GCP to create a clusterTiger2019-02-191-0/+5
| |/
* | Merge branch 'security-50334-11-7' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Fix git clone revealing private repo's presenceMark Chao2019-02-191-0/+5
| |/
* | Merge branch 'security-56348-11-7' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Check snippet attached file to be moved is within designated directoryMark Chao2019-02-211-0/+5
| |/
* | Check validity of prometheus_service before queryReuben Pereira2019-02-271-0/+5
* | Merge branch 'security-protect-private-repo-information-11-7' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Add changelog entryLuke Duncalfe2019-02-211-0/+5
| |/
* | Arbitrary file read via MergeRequestDiffFrancisco Javier López2019-02-271-0/+5
* | Merge branch '11-7-security-2799-emails' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \
| * | Remove link after issue move when no permissionsJarka Košanová2019-02-201-0/+5
| |/
* | Merge branch 'security-kubernetes-local-ssrf-11-7' into '11-7-stable'Yorick Peterse2019-02-271-0/+5
|\ \